Malware

Should I remove “Mal/Generic-R + Troj/DwnLdr-MJA”?

Malware Removal

The Mal/Generic-R + Troj/DwnLdr-MJA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/DwnLdr-MJA virus can do?

  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Steals private information from local Internet browsers
  • Exhibits behavior characteristic of Pony malware
  • Exhibits possible ransomware file modification behavior
  • Collects information about installed applications
  • Creates a hidden or system file
  • Attempts to access Bitcoin/ALTCoin wallets
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed mail clients
  • Anomalous binary characteristics

How to determine Mal/Generic-R + Troj/DwnLdr-MJA?


File Info:

crc32: C1536234
md5: 49d8d33e05e8f8a720ee2b2d890729eb
name: 49D8D33E05E8F8A720EE2B2D890729EB.mlw
sha1: 957ecde5354bd978d08a7e92e8d2d95003e3e441
sha256: ed29dc0edb5cacac638c89b2b5d9c7eb445fd2e9472d0432b6c6fa42c6c21709
sha512: 3e327e7038bf725ea274bca3c891799aca426c786b59d6de18aad9052f775bce658ff4286aac9a72324963f5bab6358e5677490b842e9f415e23d378cc7c3352
ssdeep: 3072:siTLZhs0uDI0rAfOXl+y+uql/GOtsrVrqhTqndtndhndKndP:HTLFuD6fOXlql/GLJrqqndtndhndKndP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Mal/Generic-R + Troj/DwnLdr-MJA also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.DataStealer.1.F15EE4D0
FireEyeGeneric.mg.49d8d33e05e8f8a7
CAT-QuickHealTrojanpws.Tepfer.20314
ALYacGeneric.DataStealer.1.F15EE4D0
CylanceUnsafe
VIPRETrojan.Win32.Fareit.j (fs)
SangforWin.Trojan.Fareit-403
K7AntiVirusPassword-Stealer ( 0055e3dc1 )
BitDefenderGeneric.DataStealer.1.F15EE4D0
K7GWPassword-Stealer ( 0055e3dc1 )
Cybereasonmalicious.e05e8f
BaiduWin32.Trojan-PSW.Fareit.a
CyrenW32/S-531fd00a!Eldorado
SymantecDownloader.Ponik!gm
APEXMalicious
AvastSf:Crypt-AQ [Trj]
ClamAVWin.Trojan.PonyStealer-9831667-0
KasperskyTrojan-PSW.Win32.Tepfer.gen
AlibabaTrojanPSW:Win32/Tepfer.27110cf5
NANO-AntivirusTrojan.Win32.Tepfer.dqjlcn
ViRobotBackdoor.Win32.Pony.Gen.A
AegisLabTrojan.Win32.Generic.mtwx
RisingTrojan.Fareit!1.A343 (CLASSIC)
Ad-AwareGeneric.DataStealer.1.F15EE4D0
TACHYONTrojan-PWS/W32.Tepfer.165604
EmsisoftGeneric.DataStealer.1.F15EE4D0 (B)
ComodoTrojWare.Win32.PWS.Fareit.GS@5t8zib
F-SecureTrojan.TR/BAS.Fareit.owaqw
DrWebTrojan.PWS.Stealer.13052
ZillyaTrojan.Tepfer.Win32.80159
McAfee-GW-EditionBehavesLike.Win32.Dropper.ch
MaxSecureTrojan.Malware.6071356.susgen
SophosMal/Generic-R + Troj/DwnLdr-MJA
IkarusTrojan.Crypt
JiangminTrojan/PSW.Tepfer.ccdw
AviraTR/BAS.Fareit.owaqw
Antiy-AVLTrojan[PSW]/Win32.Tepfer
MicrosoftPWS:Win32/Fareit
GridinsoftTrojan.Win32.Fareit.vl!i
ArcabitGeneric.DataStealer.1.F15EE4D0
ZoneAlarmTrojan-PSW.Win32.Tepfer.gen
GDataWin32.Trojan-Stealer.Fareit.O
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Tepfer.R295551
Acronissuspicious
McAfeeFareit-FBK!49D8D33E05E8
MAXmalware (ai score=85)
VBA32SScope.Malware-Cryptor.Ponik
MalwarebytesSpyware.Pony
PandaTrj/Genetic.gen
ESET-NOD32Win32/PSW.Fareit.G
TencentMalware.Win32.Gencirc.10b0c571
YandexTrojan.PSteal.Gen.TO
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetW32/Fareit.G!tr
BitDefenderThetaGen:NN.ZexaF.34590.k8X@aaa!xji
AVGSf:Crypt-AQ [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/TrojanSpy.Tepfer.HxMB4B4B

How to remove Mal/Generic-R + Troj/DwnLdr-MJA?

Mal/Generic-R + Troj/DwnLdr-MJA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment