Malware

Troj/Fareit-KBP removal instruction

Malware Removal

The Troj/Fareit-KBP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Fareit-KBP virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Troj/Fareit-KBP?


File Info:

crc32: DFB806E4
md5: 86d8ff58d552db90a3d2338677cd68b7
name: goziecrut.exe
sha1: 5081537885732eec9425f2105b3ab89a3728c9e1
sha256: 57884d6b5a9d254322b1b54b37de7f547507f74f276db25423a6c10c0bd81351
sha512: 245f3ae45457bb45c7c2ff01e700945c5ca40e33c037a10123c98be48f2d3d58abfaf434d75e01302efef68f2d9a816bf2d196c4150cccbc5d9bbeb26bb553b1
ssdeep: 6144:XndXar2dwa9kINLVyGDXUmvEMuJkuK8hc:Xdqr2fZwGweumuK8hc
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: 2.1r2, xa9 2000-2005 Maxprog
InternalName:
FileVersion: 2.1..2
CompanyName:
Country:
ProductName:
ProductVersion: 2.1r2
FileDescription: eMail Extractor v2.1r2
Release: Final
OriginalFilename: eMail Extractor.exe

Troj/Fareit-KBP also known as:

DrWebTrojan.Siggen9.21994
MicroWorld-eScanTrojan.GenericKD.33557528
Qihoo-360Generic/Trojan.8ed
McAfeePacked-FWY!86D8FF58D552
CylanceUnsafe
K7AntiVirusTrojan ( 0056081c1 )
BitDefenderTrojan.GenericKD.33557528
K7GWTrojan ( 0056081c1 )
Cybereasonmalicious.885732
Invinceaheuristic
BitDefenderThetaGen:NN.ZemsilF.34100.Fm0@a8!ZBJvi
F-ProtW32/MSIL_Kryptik.AIU.gen!Eldorado
TrendMicro-HouseCallTROJ_GEN.R002C0PCI20
AvastWin32:TrojanX-gen [Trj]
GDataTrojan.GenericKD.33557528
KasperskyHEUR:Trojan.MSIL.Gorgon.gen
AlibabaTrojan:Win32/csharp.ali2000008
ViRobotTrojan.Win32.S.Infostealer.512512
AegisLabTrojan.Multi.Generic.4!c
RisingTrojan.Lokibot!8.F1B5 (CLOUD)
Endgamemalicious (high confidence)
EmsisoftTrojan.Crypt (A)
F-SecureHeuristic.HEUR/AGEN.1002951
TrendMicroTROJ_GEN.R002C0PCI20
McAfee-GW-EditionBehavesLike.Win32.Generic.ht
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.86d8ff58d552db90
SophosTroj/Fareit-KBP
IkarusTrojan.MSIL.Inject
CyrenW32/MSIL_Kryptik.AIU.gen!Eldorado
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1002951
MAXmalware (ai score=80)
Antiy-AVLTrojan/MSIL.Gorgon
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Generic.D2000C18
ZoneAlarmHEUR:Trojan.MSIL.Gorgon.gen
AhnLab-V3Trojan/Win32.Agent.R284273
Acronissuspicious
ALYacSpyware.LokiBot
Ad-AwareTrojan.GenericKD.33557528
MalwarebytesTrojan.HCrypt.Generic
PandaTrj/Agent.FUM
APEXMalicious
ESET-NOD32a variant of MSIL/Kryptik.VCR
SentinelOneDFI – Malicious PE
FortinetMSIL/0131.A!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Troj/Fareit-KBP?

Troj/Fareit-KBP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment