Categories: Malware

Win32/Fynloski.AS removal

The Win32/Fynloski.AS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Fynloski.AS virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Fynloski.AS?


File Info:

crc32: F5BCA273md5: 1004b15698727c95b1af08fab2d4c424name: 64a2d092fea47f47.exesha1: b2d3125ef13aa6231bf2b86691cf674fa13a4612sha256: 143430763af9b6e2764f090861e8558e241268c3c4ca3ac76c14b91956781ebcsha512: 87bc2c39dffc70d591f8bb0bad90d83334038ece93563ac2b16e152d5a9f05ad940fec9b747c9cd5396b30888827a3f8180921f323d4d0b2577d70c50ceca49assdeep: 6144:IcNYk1yuwEDBum3qYWnl0pd0EX3Zq2b6wfIDYm0PHQk9yOfenu:IcWkbgTYWnYnt/IDYhPmOeutype: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 1999InternalName: MSRSAAPPFileVersion: 1, 0, 0, 1CompanyName: Microsoft Corp.Comments: Remote Service ApplicationProductName: Remote Service ApplicationProductVersion: 4, 0, 0, 0FileDescription: Remote Service ApplicationOriginalFilename: MSRSAAP.EXETranslation: 0x0409 0x04b0

Win32/Fynloski.AS also known as:

Bkav W32.BitwanD.Trojan
MicroWorld-eScan Gen:Trojan.Heur.tmKfra0@tThS
FireEye Generic.mg.1004b15698727c95
McAfee Generic.gj
Cylance Unsafe
VIPRE Backdoor.Win32.Fynloski.A (v)
K7AntiVirus Trojan ( 004bc4d11 )
BitDefender Gen:Trojan.Heur.tmKfra0@tThS
K7GW Trojan ( 004bc4d11 )
Cybereason malicious.698727
TrendMicro BKDR_FYNLOS.SMM
BitDefenderTheta AI:Packer.51B5A02F1C
F-Prot W32/Fynloski.BA
Symantec Backdoor.Breut!gm
TotalDefense Win32/Fynloski.A!generic
Baidu Win32.Backdoor.Agent.l
TrendMicro-HouseCall BKDR_FYNLOS.SMM
ClamAV Win.Trojan.DarkKomet-1
GData Win32.Trojan-Spy.DarkComet.J
Kaspersky Backdoor.Win32.DarkKomet.gwbu
Alibaba Backdoor:Win32/DarkKomet.c0882f82
NANO-Antivirus Trojan.Win32.Tordev.dgnepn
APEX Malicious
Tencent Win32.Backdoor.Darkkomet.Dsyu
Endgame malicious (moderate confidence)
Sophos Mal/Fynloski-C
Comodo Packed.Win32.MUPX.Gen@24tbus
F-Secure Trojan.TR/Patched.Ren.Gen
DrWeb BackDoor.Tordev.9
Zillya Trojan.Fynloski.Win32.742
Invincea heuristic
Trapmine malicious.moderate.ml.score
CMC Backdoor.Win32.DarkKomet!O
Emsisoft Gen:Trojan.Heur.tmKfra0@tThS (B)
SentinelOne DFI – Suspicious PE
Cyren W32/Fynloski.FWDO-2352
Jiangmin Trojan/Genome.bomw
Webroot W32.Trojan.Gen
Avira TR/Patched.Ren.Gen
MAX malware (ai score=100)
Arcabit Trojan.Heur.E4CBBE
SUPERAntiSpyware Backdoor.Fynloski/Variant
ZoneAlarm Backdoor.Win32.DarkKomet.gwbu
Microsoft Trojan:Win32/Dorv.A
AhnLab-V3 Win-Trojan/FCN.140610.X1341
Acronis suspicious
Ad-Aware Gen:Trojan.Heur.tmKfra0@tThS
Malwarebytes Backdoor.Packed.DK
Zoner Trojan.Win32.29578
ESET-NOD32 a variant of Win32/Fynloski.AS
Rising Backdoor.Pontoeb!1.6637 (CLOUD)
Yandex Trojan.Comet.Gen.LO
Ikarus Backdoor.Win32.DarkKomet
MaxSecure Backdoor.W32.DarkKomet.aagr
Fortinet W32/Generic.AC.DB56!tr
AVG FileRepMalware
Avast MSIL:GenMalicious-CHX [Trj]
CrowdStrike win/malicious_confidence_90% (W)
Qihoo-360 Win32/Backdoor.DarkKomet.B

How to remove Win32/Fynloski.AS?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Tedy.527363 removal guide

The Tedy.527363 is considered dangerous by lots of security experts. When this infection is active,…

1 min ago

Should I remove “Zusy.472379 (B)”?

The Zusy.472379 (B) is considered dangerous by lots of security experts. When this infection is…

6 mins ago

Win32.Morto.A removal tips

The Win32.Morto.A is considered dangerous by lots of security experts. When this infection is active,…

16 mins ago

Win32/Downloader.Agent.CP potentially unwanted information

The Win32/Downloader.Agent.CP potentially unwanted is considered dangerous by lots of security experts. When this infection…

32 mins ago

Trojan:MSIL/Zusy.PTHT!MTB removal tips

The Trojan:MSIL/Zusy.PTHT!MTB is considered dangerous by lots of security experts. When this infection is active,…

37 mins ago

How to remove “Trojan.Win32.Agent.xbnket”?

The Trojan.Win32.Agent.xbnket is considered dangerous by lots of security experts. When this infection is active,…

42 mins ago