Malware

Win32/Fynloski.AS removal

Malware Removal

The Win32/Fynloski.AS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Fynloski.AS virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Fynloski.AS?


File Info:

crc32: F5BCA273
md5: 1004b15698727c95b1af08fab2d4c424
name: 64a2d092fea47f47.exe
sha1: b2d3125ef13aa6231bf2b86691cf674fa13a4612
sha256: 143430763af9b6e2764f090861e8558e241268c3c4ca3ac76c14b91956781ebc
sha512: 87bc2c39dffc70d591f8bb0bad90d83334038ece93563ac2b16e152d5a9f05ad940fec9b747c9cd5396b30888827a3f8180921f323d4d0b2577d70c50ceca49a
ssdeep: 6144:IcNYk1yuwEDBum3qYWnl0pd0EX3Zq2b6wfIDYm0PHQk9yOfenu:IcWkbgTYWnYnt/IDYhPmOeu
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 1999
InternalName: MSRSAAPP
FileVersion: 1, 0, 0, 1
CompanyName: Microsoft Corp.
Comments: Remote Service Application
ProductName: Remote Service Application
ProductVersion: 4, 0, 0, 0
FileDescription: Remote Service Application
OriginalFilename: MSRSAAP.EXE
Translation: 0x0409 0x04b0

Win32/Fynloski.AS also known as:

BkavW32.BitwanD.Trojan
MicroWorld-eScanGen:Trojan.Heur.tmKfra0@tThS
FireEyeGeneric.mg.1004b15698727c95
McAfeeGeneric.gj
CylanceUnsafe
VIPREBackdoor.Win32.Fynloski.A (v)
K7AntiVirusTrojan ( 004bc4d11 )
BitDefenderGen:Trojan.Heur.tmKfra0@tThS
K7GWTrojan ( 004bc4d11 )
Cybereasonmalicious.698727
TrendMicroBKDR_FYNLOS.SMM
BitDefenderThetaAI:Packer.51B5A02F1C
F-ProtW32/Fynloski.BA
SymantecBackdoor.Breut!gm
TotalDefenseWin32/Fynloski.A!generic
BaiduWin32.Backdoor.Agent.l
TrendMicro-HouseCallBKDR_FYNLOS.SMM
ClamAVWin.Trojan.DarkKomet-1
GDataWin32.Trojan-Spy.DarkComet.J
KasperskyBackdoor.Win32.DarkKomet.gwbu
AlibabaBackdoor:Win32/DarkKomet.c0882f82
NANO-AntivirusTrojan.Win32.Tordev.dgnepn
APEXMalicious
TencentWin32.Backdoor.Darkkomet.Dsyu
Endgamemalicious (moderate confidence)
SophosMal/Fynloski-C
ComodoPacked.Win32.MUPX.Gen@24tbus
F-SecureTrojan.TR/Patched.Ren.Gen
DrWebBackDoor.Tordev.9
ZillyaTrojan.Fynloski.Win32.742
Invinceaheuristic
Trapminemalicious.moderate.ml.score
CMCBackdoor.Win32.DarkKomet!O
EmsisoftGen:Trojan.Heur.tmKfra0@tThS (B)
SentinelOneDFI – Suspicious PE
CyrenW32/Fynloski.FWDO-2352
JiangminTrojan/Genome.bomw
WebrootW32.Trojan.Gen
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=100)
ArcabitTrojan.Heur.E4CBBE
SUPERAntiSpywareBackdoor.Fynloski/Variant
ZoneAlarmBackdoor.Win32.DarkKomet.gwbu
MicrosoftTrojan:Win32/Dorv.A
AhnLab-V3Win-Trojan/FCN.140610.X1341
Acronissuspicious
Ad-AwareGen:Trojan.Heur.tmKfra0@tThS
MalwarebytesBackdoor.Packed.DK
ZonerTrojan.Win32.29578
ESET-NOD32a variant of Win32/Fynloski.AS
RisingBackdoor.Pontoeb!1.6637 (CLOUD)
YandexTrojan.Comet.Gen.LO
IkarusBackdoor.Win32.DarkKomet
MaxSecureBackdoor.W32.DarkKomet.aagr
FortinetW32/Generic.AC.DB56!tr
AVGFileRepMalware
AvastMSIL:GenMalicious-CHX [Trj]
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Backdoor.DarkKomet.B

How to remove Win32/Fynloski.AS?

Win32/Fynloski.AS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment