Trojan

AIT:Trojan.Nymeria.3111 removal

Malware Removal

The AIT:Trojan.Nymeria.3111 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AIT:Trojan.Nymeria.3111 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

gcafefo4.pe.hu

How to determine AIT:Trojan.Nymeria.3111?


File Info:

crc32: F7DEF7A5
md5: ee8fb95aec2782f20e695997d5edf9ac
name: EE8FB95AEC2782F20E695997D5EDF9AC.mlw
sha1: 9539f7d53fed3def2e195c11fc3e93e1beed88d9
sha256: 3a1aee7bf61fd2831e44cc9877786b1dbed68cc98ba5eaebde1315c777e70300
sha512: 0290e218740e512d2cec8f62a30f15a89823bfdc78d94a5c5fc9d2c4319544293a7da44b760e4861f709505904fdff6bfe4f65e3e99338f25ea2c48eb13d2c47
ssdeep: 24576:cAHnh+eWsN3skA4RV1Hom2KXMmHaJq5ulQLGPygyN5N:7h+ZkldoPK8YaM5ulc4kN
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: TranNghiaIT
FileVersion: 3.3.14.5
CompanyName: TranNghiaIT
LegalTradeMarks: TranNghiaIT
Comments: TranNghiaIT
ProductName: TranNghiaIT
ProductVersion: 3.3.14.5
FileDescription: TranNghiaIT
Translation: 0x0809 0x04b0

AIT:Trojan.Nymeria.3111 also known as:

ALYacAIT:Trojan.Nymeria.3111
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderAIT:Trojan.Nymeria.3111
Cybereasonmalicious.aec278
MicroWorld-eScanAIT:Trojan.Nymeria.3111
Ad-AwareAIT:Trojan.Nymeria.3111
McAfee-GW-EditionArtemis!Trojan
FireEyeAIT:Trojan.Nymeria.3111
EmsisoftAIT:Trojan.Nymeria.3111 (B)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitAIT:Trojan.Nymeria.DC27
GDataAIT:Trojan.Nymeria.3111 (2x)
McAfeeArtemis!EE8FB95AEC27
MAXmalware (ai score=81)
MalwarebytesMachineLearning/Anomalous.100%
Paloaltogeneric.ml

How to remove AIT:Trojan.Nymeria.3111?

AIT:Trojan.Nymeria.3111 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment