Malware

How to remove “Mal/Generic-R + Troj/Fareit-CHG”?

Malware Removal

The Mal/Generic-R + Troj/Fareit-CHG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/Fareit-CHG virus can do?

  • Executable code extraction
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Deletes its original binary from disk
  • Steals private information from local Internet browsers
  • Spoofs its process name and/or associated pathname to appear as a legitimate process
  • Creates a hidden or system file
  • Creates a copy of itself
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed instant messenger clients
  • Harvests information related to installed mail clients
  • Collects information to fingerprint the system

Related domains:

becharnise.ir

How to determine Mal/Generic-R + Troj/Fareit-CHG?


File Info:

crc32: 3D456366
md5: 75db65df801529027b4884cb69ad85fa
name: 75DB65DF801529027B4884CB69AD85FA.mlw
sha1: d4dbb10f5b8f9fd47647a7db5b90c1e8c2208a2c
sha256: b10eea964752defb636667f3cd4641f1f8b5f3285ba583d4ed92868719c4d785
sha512: 8df56c19c65a4e8fdb75614f81f3735f18cf2b9d4ea38c388e5170f7cbc0b10b2e584a50e82319f4ceb9f3fdbf6eb9905feb1dc4527d16d9daf62ae8be33c06e
ssdeep: 1536:czvQSZpGS4/31A6mQgL2eYCGDwRcMkVQd8YhY0/EqfIzmd:nSHIG6mQwGmfOQd8YhY0/EqUG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Mal/Generic-R + Troj/Fareit-CHG also known as:

BkavW32.ErasiqaJ.Trojan
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36289040
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeeLokiBot!75DB65DF8015
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusPassword-Stealer ( 004d88671 )
BitDefenderTrojan.GenericKD.36289040
K7GWPassword-Stealer ( 004d88671 )
Cybereasonmalicious.f80152
CyrenW32/S-f2ff7de9!Eldorado
SymantecSMG.Heur!gen
APEXMalicious
AvastWin32:LokiBot-A [Trj]
ClamAVWin.Trojan.naKocTb-6331389-1
KasperskyTrojan.Win32.Agentb.bvrg
AlibabaTrojanPSW:Win32/Agentb.200e527b
NANO-AntivirusTrojan.Win32.Stealer.eshrhl
ViRobotTrojan.Win32.Agent.106496.HD
AegisLabTrojan.Win32.naKocTb.tnB5
TencentMalware.Win32.Gencirc.10b3c757
Ad-AwareTrojan.GenericKD.36289040
EmsisoftTrojan-PSW.Fareit (A)
ComodoTrojWare.Win32.Fareit.LB@7pzcfo
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.PWS.Siggen2.59088
ZillyaTrojan.naKocTb.Win32.12
TrendMicroTSPY_LOKI.SMA
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.75db65df80152902
SophosMal/Generic-R + Troj/Fareit-CHG
IkarusTrojan-Spy.Primarypass
JiangminTrojan.naKocTb.l
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.SGeneric
MicrosoftPWS:Win32/PrimaryPass.AD!MTB
GridinsoftMalware.Win32.Pack.39734!se
ArcabitTrojan.Generic.D229BA10
SUPERAntiSpywareTrojan.Agent/Gen-PasswordStealer
ZoneAlarmTrojan.Win32.Agentb.bvrg
GDataTrojan.GenericKD.36289040
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Lokibot.R270234
Acronissuspicious
VBA32BScope.Trojan.Agentb
ALYacTrojan.GenericKD.36289040
TACHYONTrojan/W32.naKocTb.106496
MalwarebytesSpyware.LokiBot
PandaTrj/GdSda.A
ZonerTrojan.Win32.77501
ESET-NOD32Win32/PSW.Fareit.L
TrendMicro-HouseCallTSPY_LOKI.SMA
RisingTrojan.Lokibot!1.B343 (CLOUD)
YandexTrojan.Agentb!wvp2YvWxCHc
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Generic.AC.359BF1!tr
BitDefenderThetaAI:Packer.59A658E51E
AVGWin32:LokiBot-A [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.Agentb.HxQBQJMA

How to remove Mal/Generic-R + Troj/Fareit-CHG?

Mal/Generic-R + Troj/Fareit-CHG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment