Trojan

Trojan-PSW.Win32.Fareit.ekag removal tips

Malware Removal

The Trojan-PSW.Win32.Fareit.ekag is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Fareit.ekag virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan-PSW.Win32.Fareit.ekag?


File Info:

crc32: 8DABD5EC
md5: b473328c23e472bd34f388b13a1bd255
name: B473328C23E472BD34F388B13A1BD255.mlw
sha1: 4c13913413a1851e0f38d468f23a9fb4a52a18aa
sha256: eb092bae4ac2f4b057d6129e1d9db4afaa60564229c4bfd76e42c44b045afecd
sha512: 256da10f27abc94000d347688e1a86f424957e45d9ab2272ac8f11307c6b1873d5f5dcc3af5fdfcfd4040a41c33bb10b3b2ee6021e10cf79294f7323dca08a71
ssdeep: 12288:i8ilMcF/+HSUyoNCRpbiw39hyoUzznIT3L:ijlV2H7yocgwrazzMb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Neednot8
FileVersion: 8.08
CompanyName: thE pidgin DEVELoper COMMUnity
LegalTrademarks: blUESTACK sySTEMS fnC.
Comments: stELLAR ftD
ProductName: asus
ProductVersion: 8.08
OriginalFilename: Neednot8.exe

Trojan-PSW.Win32.Fareit.ekag also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.PonyStealer.Em1@dChhDRdi
FireEyeGeneric.mg.b473328c23e472bd
Qihoo-360Win32/Trojan.Multi.daf
McAfeeTrojan-FQCM!B473328C23E4
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0053cb231 )
BitDefenderGen:Heur.PonyStealer.Em1@dChhDRdi
K7GWTrojan ( 0053cb231 )
Cybereasonmalicious.c23e47
BitDefenderThetaGen:NN.ZevbaF.34804.Em1@aChhDRdi
CyrenW32/VBKrypt.EK.gen!Eldorado
SymantecDownloader.Ponik
ESET-NOD32a variant of Win32/Injector.EAMB
APEXMalicious
AvastWin32:DangerousSig [Trj]
KasperskyTrojan-PSW.Win32.Fareit.ekag
AlibabaTrojanPSW:Win32/Fareit.b00d55d9
NANO-AntivirusTrojan.Win32.Fareit.fhxyjc
TencentWin32.Trojan-qqpass.Qqrob.Pepf
Ad-AwareGen:Heur.PonyStealer.Em1@dChhDRdi
SophosMal/Generic-S + Mal/FareitVB-V
ComodoMalware@#2hdztsj6vamg5
F-SecureHeuristic.HEUR/AGEN.1121344
DrWebTrojan.PWS.Stealer.13052
ZillyaTrojan.Fareit.Win32.28443
TrendMicroTrojanSpy.Win32.FAREIT.SMA.hp
McAfee-GW-EditionTrojan-FQCM!B473328C23E4
EmsisoftTrojan.Injector (A)
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1121344
MAXmalware (ai score=100)
Antiy-AVLTrojan[PSW]/Win32.Fareit
MicrosoftVirTool:Win32/VBInject.AGY!bit
ArcabitTrojan.PonyStealer.E094B3
AhnLab-V3Win-Trojan/VBKrypt.RP03.X1850
ZoneAlarmTrojan-PSW.Win32.Fareit.ekag
GDataGen:Heur.PonyStealer.Em1@dChhDRdi
CynetMalicious (score: 100)
VBA32BScope.Trojan.Emelent
MalwarebytesTrojan.MalPack.VB
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojanSpy.Win32.FAREIT.SMA.hp
RisingTrojan.Injector!8.C4 (CLOUD)
YandexTrojan.PWS.Fareit!KcbbzEAdGD8
IkarusTrojan.VB.Crypt
eGambitUnsafe.AI_Score_93%
FortinetW32/GenKryptik.COPL!tr
AVGWin32:DangerousSig [Trj]
CrowdStrikewin/malicious_confidence_80% (D)

How to remove Trojan-PSW.Win32.Fareit.ekag?

Trojan-PSW.Win32.Fareit.ekag removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment