Malware

What is “Mal/Generic-R + Troj/Fareit-LMR”?

Malware Removal

The Mal/Generic-R + Troj/Fareit-LMR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/Fareit-LMR virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Mal/Generic-R + Troj/Fareit-LMR?


File Info:

crc32: 924B1F60
md5: 8ad87cebd9aaadd8a385fa504863e532
name: 8AD87CEBD9AAADD8A385FA504863E532.mlw
sha1: 68e8214ff89b2c93f147bdc797889b25b85a2ee5
sha256: ef44e807ff152bb2c5f6ed11f573087872f0fdf1baaa0e31b7767c5723e503e7
sha512: 53c88bce7495219b6b35bfaba1756ed04ba8ac9a05ededcd7752a4656369cf492d111b4b823c93e57ed41379eeb71e027446990e600216ba23ed427946201037
ssdeep: 6144:IBb6rFigZaGASvJfbwhmxdPpndlNWrG9mx3Xf1pM4+h+0LX:IBGYgZTA+9bwUnwrGYrpZGL
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2019
Assembly Version: 1.0.0.0
InternalName: Category.exe
FileVersion: 1.0.0.0
CompanyName: Rafael Botossi
LegalTrademarks:
Comments: Programa para Gravaxe7xe3o e Playback de Axe7xf5es do Usuxe1rio via Teclado e Mouse no Windows Desktop
ProductName: MisterHook
ProductVersion: 1.0.0.0
FileDescription: MisterHook
OriginalFilename: Category.exe

Mal/Generic-R + Troj/Fareit-LMR also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36363372
FireEyeTrojan.GenericKD.36363372
ALYacSpyware.LokiBot
MalwarebytesTrojan.MalPack.PNG.Generic
AegisLabTrojan.Multi.Generic.4!c
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.36363372
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.ff89b2
BitDefenderThetaGen:NN.ZemsilF.34574.Am0@aOlFnSc
CyrenW32/MSIL_Kryptik.DEH.gen!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
AlibabaTrojanSpy:MSIL/Kryptik.6d40cbab
NANO-AntivirusTrojan.Win32.Noon.ilxrwf
ViRobotTrojan.Win32.Z.Noon.437248
Ad-AwareTrojan.GenericKD.36363372
SophosMal/Generic-R + Troj/Fareit-LMR
ComodoMalware@#ubofx5tfelpy
F-SecureTrojan.TR/AD.LokiBot.ufzmm
DrWebTrojan.PackedNET.541
McAfee-GW-EditionPWS-FCUF!8AD87CEBD9AA
EmsisoftTrojan-Spy.Agent (A)
AviraTR/AD.LokiBot.ufzmm
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftTrojan.Win32.Downloader.sa
ZoneAlarmHEUR:Trojan-Spy.MSIL.Noon.gen
GDataTrojan.GenericKD.36363372
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Lokibot.C4339914
MAXmalware (ai score=89)
PandaTrj/GdSda.A
ZonerTrojan.Win32.104832
ESET-NOD32a variant of MSIL/Kryptik.ZRQ
TrendMicro-HouseCallTrojanSpy.MSIL.LOKI.PUHBAZCRCOO
TencentWin32.Backdoor.Fareit.Auto
IkarusTrojan.MSIL.Inject
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Kryptik.ZQQ!tr
WebrootW32.Trojan.Gen
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.LokiBot.HgIASPQA

How to remove Mal/Generic-R + Troj/Fareit-LMR?

Mal/Generic-R + Troj/Fareit-LMR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment