Malware

PWS:Win32/Fareit.VK!MTB removal tips

Malware Removal

The PWS:Win32/Fareit.VK!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Fareit.VK!MTB virus can do?

  • Unconventionial language used in binary resources: Russian
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
thisaintpc.com

How to determine PWS:Win32/Fareit.VK!MTB?


File Info:

crc32: 5900D771
md5: 09880304fe880adfc28550d51bfcc48e
name: 09880304FE880ADFC28550D51BFCC48E.mlw
sha1: 4cf3833fb78ceff38292a03457cfe0150414d117
sha256: 3f4fcba5e0698d8fba2490f09b01071b5beb6f66b3f62ea8feede49789c165e2
sha512: 2ea96fa9f467d78ec47f0eff3981cb58ea06e28b5d0a16f78509af507755e1bd62267c63f7a5f26c94377d1dd98e1a1ad982f0a1f5c9107a90311891acce0684
ssdeep: 768:jxDDnyAiIbhn+oRTaFSxjquEDFAnA1tLRNk2djaYoCMHosOAJMPsED3VK2+ZtyOd:jxDDnd1Raqq2uBNdSCM+YTjipvF2Pl
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

PWS:Win32/Fareit.VK!MTB also known as:

K7AntiVirusTrojan ( 004fe8961 )
DrWebTrojan.DownLoad3.28161
MicroWorld-eScanTrojan.Downloader.JQAP
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.Downloader.JQAP
CylanceUnsafe
ZillyaTrojan.Buzus.Win32.117902
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDownloader:Win32/Small.fb4522b6
K7GWTrojan ( 004fe8961 )
Cybereasonmalicious.4fe880
TrendMicroTSPY_FAREIT.AHP
BaiduWin32.Trojan-Spy.Zbot.a
CyrenW32/Trojan.KFRI-0889
SymantecDownloader
ESET-NOD32Win32/TrojanDownloader.Small.PRL
ZonerTrojan.Win32.20972
APEXMalicious
TotalDefenseWin32/Upatre.BX
AvastWin32:Malware-gen
ClamAVWin.Downloader.Upatre-5744087-0
GDataTrojan.Downloader.JQAP
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Downloader.JQAP
NANO-AntivirusTrojan.Win32.DownLoad3.cjdyni
ViRobotTrojan.Win32.Upatre.51256
TencentMalware.Win32.Gencirc.10b85cc8
Ad-AwareTrojan.Downloader.JQAP
SophosTroj/Agent-ADIW
ComodoTrojWare.Win32.TrojanDownloader.Small.PR@5276zr
BitDefenderThetaGen:NN.ZexaF.34110.fuZ@aC3aTjik
VIPRETrojan-Downloader.Win32.Small.aabb (v)
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.mm
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.09880304fe880adf
EmsisoftTrojan.Downloader.JQAP (B)
SentinelOneDFI – Malicious PE
F-ProtW32/Trojan2.OBOK
Endgamemalicious (high confidence)
AviraTR/Spy.Zbot.amz.2
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.Buzus
MicrosoftPWS:Win32/Fareit.VK!MTB
JiangminTrojan/Buzus.bnwn
ArcabitTrojan.Downloader.JQAP
AegisLabTrojan.Win32.Generic.4!e
ZoneAlarmHEUR:Trojan.Win32.Generic
AhnLab-V3Trojan/Win32.Zbot.R80711
Acronissuspicious
McAfeePWSZbot-FEV!09880304FE88
MAXmalware (ai score=82)
VBA32Trojan.Fareit.2883
MalwarebytesTrojan.Upatre
PandaGeneric Malware
TrendMicro-HouseCallTSPY_FAREIT.AHP
RisingDropper.Generic!8.35E (TFE:dGZlOgVMxIOC84dlUQ)
YandexTrojanSpy.ZBot!168d6X6+yA4
IkarusTrojan-Spy.Win32.Zbot
MaxSecureTrojan.Upatre.Gen
FortinetW32/Kryptik.BIYN!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.FakePDF.AK

How to remove PWS:Win32/Fareit.VK!MTB?

PWS:Win32/Fareit.VK!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment