Trojan

Should I remove “AIT:Trojan.Nymeria.4032”?

Malware Removal

The AIT:Trojan.Nymeria.4032 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AIT:Trojan.Nymeria.4032 virus can do?

  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine AIT:Trojan.Nymeria.4032?


File Info:

crc32: D151EE30
md5: 5739a6bf7bf22e7f5437e643090489d2
name: 5739A6BF7BF22E7F5437E643090489D2.mlw
sha1: 52b6f7e56683ea49b7d08214b0ba72c5d48ff065
sha256: 1db65c3b1a4362cc6ee03472c247236bf4a1b84d3cacc1920a6f2a838e603904
sha512: fe5d10815d67a3746610d66fe33edcab4ad6770bfca5480dd311bb9daa042d7186d267ce27b8fdd2b758b58ea55185ed8340c7aa59e656acc20dab05e534d5f2
ssdeep: 6144:EuIlWqB+ihabs7Ch9KwyF5LeLodp2D1Mmakda0qLqIhnL6W7MBe:v6Wq4aaE6KwyF5L0Y2D1PqLSPe
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

AIT:Trojan.Nymeria.4032 also known as:

K7AntiVirusTrojan ( 00515a051 )
DrWebBackDoor.IRC.Bot.3238
CynetMalicious (score: 100)
ALYacAIT:Trojan.Nymeria.4032
CylanceUnsafe
K7GWTrojan ( 00515a051 )
Cybereasonmalicious.f7bf22
CyrenW32/AutoIt.SL.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Injector.Autoit.DAA
APEXMalicious
AvastAutoIt:Injector-G [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderAIT:Trojan.Nymeria.4032
NANO-AntivirusTrojan.Script.Agent.debxby
MicroWorld-eScanAIT:Trojan.Nymeria.4032
TencentWin32.Trojan.Generic.Sunx
Ad-AwareAIT:Trojan.Nymeria.4032
SophosMal/Generic-S
ComodoMalware@#wx8ole0bclkn
F-SecureHeuristic.HEUR/AGEN.1105626
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Injector.fc
FireEyeAIT:Trojan.Nymeria.4032
EmsisoftAIT:Trojan.Nymeria.4032 (B)
JiangminTrojan.MSIL.Zapchast.ag
AviraHEUR/AGEN.1105626
Antiy-AVLGrayWare/Win32.Tampering.aut
MicrosoftTrojan:Win32/Occamy.C
ArcabitAIT:Trojan.Nymeria.DFC0
GDataAIT:Trojan.Nymeria.4032 (3x)
AhnLab-V3Trojan/Win32.Generic.C2547658
McAfeeArtemis!5739A6BF7BF2
MAXmalware (ai score=95)
VBA32Trojan-Inject.Autoit.Irus
MalwarebytesMalware.Heuristic.1003
IkarusTrojan.Win32.Injector
FortinetW32/Fynloski.AM!tr
AVGAutoIt:Injector-G [Trj]
Paloaltogeneric.ml

How to remove AIT:Trojan.Nymeria.4032?

AIT:Trojan.Nymeria.4032 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment