Malware

W32/Mofksys-B removal

Malware Removal

The W32/Mofksys-B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What W32/Mofksys-B virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine W32/Mofksys-B?


File Info:

crc32: 14DC493D
md5: 1c03801320ce94e882abcece6b6c6c77
name: 1C03801320CE94E882ABCECE6B6C6C77.mlw
sha1: b3c6122bff675afc6bb9b6dd1ad26013f87ed354
sha256: b8b29b12d44c842865eb846f7abe7bd90f576dcda5b738e25c5cc71228f51926
sha512: 1e29eb0d1cd0b9c4828bc53151f7cd6de379e456d68dd2bf8bdb65b03a66573d0400ed378d14534abbb0eca85361becc9104f37c360445e1d9dd82c7895d5741
ssdeep: 6144:FvEf482T6i5Lir062Hy40cGq+ubThVcHm:lEfD2T5xY0624cj+YThv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Win
FileVersion: 1.00
CompanyName: Microsoft
ProductName: Win
ProductVersion: 1.00
OriginalFilename: Win.exe

W32/Mofksys-B also known as:

BkavW32.VB.Swisyn.PE
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Gosys.A
McAfeeW32/Swisyn.a
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 0040f0591 )
BitDefenderWin32.Gosys.A
K7GWTrojan ( 0040f0591 )
Cybereasonmalicious.320ce9
TrendMicroPE_MOFKSYS.A-O
BitDefenderThetaAI:Packer.270F52C821
CyrenW32/S-77f8822b!Eldorado
SymantecTrojan.Gen.2
TotalDefenseWin32/VB.BOP
BaiduWin32.Trojan.VB.at
APEXMalicious
AvastWin32:VB-AJKP [Trj]
ClamAVWin.Trojan.VBGeneric-6735885-0
KasperskyTrojan.Win32.Swisyn.bner
NANO-AntivirusTrojan.Win32.Swisyn.efyboj
TencentTrojan.Win32.Swisyn.f
Ad-AwareWin32.Gosys.A
EmsisoftWin32.Gosys.A (B)
ComodoTrojWare.Win32.VB.OSKB@4pc2ok
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Siggen6.54687
InvinceaML/PE-A + W32/Mofksys-B
McAfee-GW-EditionBehavesLike.Win32.Swisyn.dh
FireEyeGeneric.mg.1c03801320ce94e8
SophosW32/Mofksys-B
IkarusTrojan-Spy.MSIL.Omaneat
JiangminTrojan/Swisyn.rmj
MaxSecureTrojan.Swisyn.BNER
AviraTR/Dropper.Gen
MAXmalware (ai score=84)
Antiy-AVLTrojan/Win32.Swisyn.bner
MicrosoftPWS:Win32/VB.CU
GridinsoftTrojan.Win32.CoinMiner.vl!n
ArcabitWin32.Gosys.A
AhnLab-V3Trojan/Win32.Swisyn.R192813
ZoneAlarmTrojan.Win32.Swisyn.bner
GDataWin32.Gosys.A
CynetMalicious (score: 100)
ESET-NOD32Win32/VB.OSK
VBA32MAS.Trojan.VB.01049
ALYacWin32.Gosys.A
MalwarebytesTrojan.VBCrypt
PandaTrj/Genetic.gen
ZonerTrojan.Win32.47063
TrendMicro-HouseCallPE_MOFKSYS.A-O
RisingTrojan.QOT!1.6519 (CLASSIC)
YandexTrojan.GenAsa!dm5qTke+fEg
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_83%
FortinetW32/Swisyn.BNER!tr
WebrootW32.Trojan.Swisyn
AVGWin32:VB-AJKP [Trj]
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM03.0.540F.Malware.Gen

How to remove W32/Mofksys-B?

W32/Mofksys-B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment