Malware

Win32/Farfli.AXX (file analysis)

Malware Removal

The Win32/Farfli.AXX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Farfli.AXX virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Win32/Farfli.AXX?


File Info:

crc32: E6CBBC77
md5: a81640ea22e2a8d7d75fcc8dfbe8294e
name: A81640EA22E2A8D7D75FCC8DFBE8294E.mlw
sha1: 08cc81b856d1dd8715e66cfb99508c53b614374b
sha256: 2731bde78f5d9a0821005a2f3f9f0e97cda89506430ae9c211bf4f65ef6ba71f
sha512: 6407d56d3afd033d714b22e2970185f2d81dc398ad64c21bcf1785b11c22de5381f212785d7267c864cd124ba29f63df9aa20d273322b4ac54c0c6390da5d19d
ssdeep: 1536:NFo4LSMAGzXE+Zlc3jiXScg0BWfc9skcdVDXIPJ:NdeM31cTiXSL0Oc9skcjbIP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Farfli.AXX also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
ClamAVWin.Trojan.Gh0stRAT-9827361-1
FireEyeGeneric.mg.a81640ea22e2a8d7
CAT-QuickHealBackdoor.Farfli.K4
ALYacTrojan.GenericKD.36108541
MalwarebytesMachineLearning/Anomalous.100%
VIPREBehavesLike.Win32.Malware.ssc (mx-v)
K7AntiVirusTrojan ( 004e34221 )
BitDefenderTrojan.GenericKD.36108541
K7GWTrojan ( 004e34221 )
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderThetaGen:NN.ZexaF.34804.fqW@aCc2jugb
CyrenW32/Trojan.DJPZ-5742
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Downloader-UAD [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
AlibabaBackdoor:Win32/Zegost.554f1b22
NANO-AntivirusTrojan.Win32.Farfli.iiaarp
AegisLabTrojan.Win32.MMM.l9pU
MicroWorld-eScanTrojan.GenericKD.36108541
RisingBackdoor.Farfli!1.6531 (CLOUD)
Ad-AwareTrojan.GenericKD.36108541
EmsisoftTrojan.GenericKD.36108541 (B)
ComodoTrojWare.Win32.Agent.PDSB@4q3i1w
F-SecureHeuristic.HEUR/AGEN.1106473
BaiduWin32.Trojan.Farfli.bd
TrendMicroTROJ_GEN.R002C0DAE21
McAfee-GW-EditionBehavesLike.Win32.BadFile.mm
SophosMal/Generic-S
IkarusTrojan.Win32.Redosdru
JiangminHeur:Backdoor/Ghost
eGambitUnsafe.AI_Score_99%
AviraHEUR/AGEN.1106473
Antiy-AVLTrojan[Backdoor]/Win32.Zegost
MicrosoftBackdoor:Win32/Zegost.CG
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.GenericKD.36108541
AhnLab-V3Backdoor/Win32.Zegost.R150872
McAfeeArtemis!A81640EA22E2
MAXmalware (ai score=87)
VBA32BScope.Trojan.SvcHorse.01643
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Farfli.AXX
TrendMicro-HouseCallTROJ_GEN.R002C0DAE21
TencentWin32.Trojan.Obfuscator.Lkxa
SentinelOneStatic AI – Malicious PE
FortinetW32/Farfli.BAB!tr
AVGWin32:Downloader-UAD [Trj]
Cybereasonmalicious.856d1d
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM07.1.97D3.Malware.Gen

How to remove Win32/Farfli.AXX?

Win32/Farfli.AXX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment