Malware

Mal/Generic-S + Troj/Formbo-AFZ removal

Malware Removal

The Mal/Generic-S + Troj/Formbo-AFZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Troj/Formbo-AFZ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Mal/Generic-S + Troj/Formbo-AFZ?


File Info:

crc32: BD4269DC
md5: 9afaf42c7eddb3d17d5201b0ea0a4e00
name: 9AFAF42C7EDDB3D17D5201B0EA0A4E00.mlw
sha1: 94c56b44711de4e40e75b4c4bf8a4c57efdc6120
sha256: 744400d590042d779a25401879f9906b979e32bba3fac355a0ff2d5a00f4fcfc
sha512: 426905a995bedeb6514ad8592394e0f046221a999300c5e2ad5dd9cea6b9b0a027fdc3c59c9ffbfddc6b17d569573665ba55c16e651741c96087247d3407c6c7
ssdeep: 6144:Ds9NfO8DWGfQVk7bL8wK+O4pTW9kcF/ex4wdmX2NbTBE4u:yVRwVN90VHF9dmX2Nvir
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Mal/Generic-S + Troj/Formbo-AFZ also known as:

K7AntiVirusTrojan ( 0057cafd1 )
DrWebTrojan.Packed2.43117
CynetMalicious (score: 100)
CylanceUnsafe
SangforBackdoor.Win32.Remcos.gen
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0057cafd1 )
Cybereasonmalicious.4711de
CyrenW32/Injector.AIC.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Backdoor.Win32.Remcos.gen
BitDefenderTrojan.GenericKD.46320310
MicroWorld-eScanTrojan.GenericKD.46320310
Ad-AwareTrojan.GenericKD.46320310
SophosMal/Generic-S + Troj/Formbo-AFZ
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FRS.0NA103EK21
McAfee-GW-EditionBehavesLike.Win32.Dropper.dc
FireEyeGeneric.mg.9afaf42c7eddb3d1
EmsisoftTrojan.GenericKD.46320310 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Injector.uoeje
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/FormBook.AM!MTB
AegisLabTrojan.Win32.Remcos.m!c
ZoneAlarmHEUR:Backdoor.Win32.Remcos.gen
GDataTrojan.GenericKD.46320310
McAfeeArtemis!9AFAF42C7EDD
MAXmalware (ai score=86)
VBA32Trojan.Wacatac
MalwarebytesBackdoor.Bot
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_FRS.0NA103EK21
RisingTrojan.Injector/NSIS!1.D61F (CLASSIC)
IkarusTrojan.Inject
FortinetNSIS/Injector.EPJF!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Mal/Generic-S + Troj/Formbo-AFZ?

Mal/Generic-S + Troj/Formbo-AFZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment