Malware

How to remove “ML/PE-A + Troj/Fareit-LRV”?

Malware Removal

The ML/PE-A + Troj/Fareit-LRV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + Troj/Fareit-LRV virus can do?

  • Network activity detected but not expressed in API logs

How to determine ML/PE-A + Troj/Fareit-LRV?


File Info:

crc32: 076B7F75
md5: 6e2a56a43aa1c6903caa31b90e9feef5
name: 6E2A56A43AA1C6903CAA31B90E9FEEF5.mlw
sha1: 6f2bfe1e131b6f13e12a4d39d4c0fda13a96f48d
sha256: 9fcb1ae54405e0b756552a2663110ba007bee6426945259b77a754dbbbf670d3
sha512: 9e46c3ff77e5135f9552c3d1a3499236d09da29688e5e9285b02cf4b0dbeca05f13fb9a2e0ba90c53324c9dfc3aa63e66ebc78cf9b544161dd9999c093c3849c
ssdeep: 12288:3J5SX2wx5siJGQjjwWt31veBMg1fJsw+Cn+gJtkyJM6:Z4mwxQNqN+7U61V
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.3.5.0
InternalName: ConsoleApp2_lM21.exe
FileVersion: 1.3.5.0
CompanyName: Aya Software
LegalTrademarks:
Comments: Aya AVI WMV DVD FLV RM MKV MP4 Video Splitter Cutter Setup
ProductName: Aya AVI WMV DVD FLV RM MKV MP4 Video Splitter Cutter
ProductVersion: 1.3.5.0
FileDescription: Aya AVI WMV DVD FLV RM MKV MP4 Video Splitter Cutter Setup
OriginalFilename: ConsoleApp2_lM21.exe

ML/PE-A + Troj/Fareit-LRV also known as:

K7AntiVirusTrojan ( 0057cd251 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacSpyware.AgentTesla
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDownloader:MSIL/Kryptik.aab2dbda
K7GWTrojan ( 0057cd251 )
Cybereasonmalicious.e131b6
CyrenW32/MSIL_Kryptik.EIP.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32a variant of MSIL/Kryptik.ABAS
APEXMalicious
KasperskyHEUR:Trojan-Downloader.MSIL.Seraph.gen
BitDefenderTrojan.GenericKD.36939315
MicroWorld-eScanTrojan.GenericKD.36939315
Ad-AwareTrojan.GenericKD.36939315
SophosML/PE-A + Troj/Fareit-LRV
BitDefenderThetaGen:NN.ZemsilF.34690.Mn0@aaov4bh
VIPRETrojan.Win32.Generic!BT
TrendMicroBackdoor.MSIL.ANDROM.USMANEL21
McAfee-GW-EditionBehavesLike.Win32.Generic.tt
FireEyeGeneric.mg.6e2a56a43aa1c690
EmsisoftTrojan.GenericKD.36939315 (B)
AviraTR/AD.LokiBot.jinbf
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:MSIL/Tnega.AL!MTB
GDataMSIL.Trojan.BSE.XNY6ZA
AhnLab-V3Malware/Win.Generic.C4482283
McAfeeArtemis!6E2A56A43AA1
MAXmalware (ai score=87)
MalwarebytesSpyware.LokiBot
PandaTrj/GdSda.A
TrendMicro-HouseCallBackdoor.MSIL.ANDROM.USMANEL21
RisingDownloader.Seraph!8.111C6 (CLOUD)
IkarusTrojan.MSIL.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenKryptik.FFQR!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove ML/PE-A + Troj/Fareit-LRV?

ML/PE-A + Troj/Fareit-LRV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment