Malware

About “Mal/Generic-R + Troj/Formbo-AWS” infection

Malware Removal

The Mal/Generic-R + Troj/Formbo-AWS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/Formbo-AWS virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Mal/Generic-R + Troj/Formbo-AWS?


File Info:

crc32: 020559D9
md5: 14089f35edb31d10e2e9619ee5008159
name: 14089F35EDB31D10E2E9619EE5008159.mlw
sha1: f75f2aec3c32d5fa43ce9861d273ea9762fa8386
sha256: d9993a3a31c12b8f8c15f571680a14fb426e28ecd130430a93e3b3cd34563ac0
sha512: 7e4a759ca47f8dadb42f39e51d5096a958fbe659ed67c344109c086f36942fb1c5609547e721798ee8505ca13182145d87ed65af5b1069c6c44ec35cc0dd7e2b
ssdeep: 12288:CG8Dc9F3nC0Py3gAhvKWi/ZDPOB/fXgGgm+hWVqpCyyPqqFizttIOIFye2YX6TZ:CGqi/ZYpq/CnFQt5Re2A6TcYCS4sfD
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2009
Assembly Version: 1.0.0.7
InternalName: EventChannelAttribu.exe
FileVersion: 1.0.0.7
CompanyName: National Shirt Shop
LegalTrademarks:
Comments:
ProductName: GameAttempt
ProductVersion: 1.0.0.7
FileDescription: GameAttempt
OriginalFilename: EventChannelAttribu.exe

Mal/Generic-R + Troj/Formbo-AWS also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.MSIL.Noon.l!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader41.15659
McAfeeAgentTesla-FCTJ!14089F35EDB3
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/MSIL_Troj.BJP.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32Win32/Formbook.AA
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Backdoor.MSIL.Androm.gen
BitDefenderTrojan.GenericKD.37438663
ViRobotTrojan.Win32.S.Formbook.932352
MicroWorld-eScanTrojan.GenericKD.37438663
TencentMsil.Backdoor.Androm.Dumi
Ad-AwareTrojan.GenericKD.37438663
SophosMal/Generic-R + Troj/Formbo-AWS
BitDefenderThetaGen:NN.ZemsilF.34088.4m0@aa8NP6o
TrendMicroTROJ_FRS.VSNW13H21
McAfee-GW-EditionBehavesLike.Win32.Fareit.dc
FireEyeGeneric.mg.14089f35edb31d10
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.Swotter.lnial
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/AgentTesla!ml
GDataTrojan.GenericKD.37438663
AhnLab-V3Trojan/Win.Generic.C4598080
VBA32TScope.Trojan.MSIL
MAXmalware (ai score=97)
MalwarebytesTrojan.MalPack.PNG.Generic
PandaTrj/RnkBend.A
TrendMicro-HouseCallTROJ_FRS.VSNW13H21
IkarusWin32.SuspectCrc
FortinetMSIL/AgentTesla.QKZL!tr
AVGWin32:PWSX-gen [Trj]
Qihoo-360Win32/Trojan.Generic.HgIASakA

How to remove Mal/Generic-R + Troj/Formbo-AWS?

Mal/Generic-R + Troj/Formbo-AWS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment