Trojan

AIT:Trojan.Nymeria.6000 information

Malware Removal

The AIT:Trojan.Nymeria.6000 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AIT:Trojan.Nymeria.6000 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary file triggered YARA rule
  • Yara detections observed in process dumps, payloads or dropped files

How to determine AIT:Trojan.Nymeria.6000?


File Info:

name: B84FF5BFC024FBAAE455.mlw
path: /opt/CAPEv2/storage/binaries/9b46fc1f4fb0b7f3cdbc6c865c4f3957113ed1af5f2444597499a45d64b145cc
crc32: 1D940938
md5: b84ff5bfc024fbaae455ad1ea6389285
sha1: 9e38ae38b65419ab54316dce48d49b0ae8138aa3
sha256: 9b46fc1f4fb0b7f3cdbc6c865c4f3957113ed1af5f2444597499a45d64b145cc
sha512: d4216fb1a5ca3452f5f80a71bca6beec093472f58e37cbec387cf52ae4c8149fa941417ac0c637658bf8da7adca1eeda3f92030625536f89d78e4997e1609613
ssdeep: 24576:jAHnh+eWsN3skA4RV1Hom2KXcmtcH/VFtVpzXejB5Df4H:uh+ZkldoPKsacH3XtXMB5Df4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17145AD0273D5C036FFABA2739B6AF20596B979250133852F13981D79BD701B2273E762
sha3_384: 8f4ea224aab27a0e26254e931758a8be80aa60a48e97dc2b2f02f7bdec400e5b0b29287b855d450ac6c099e0eb204f62
ep_bytes: e8c8d00000e97ffeffffcccccccccccc
timestamp: 2024-04-29 07:58:49

Version Info:

FileVersion: 5.1.0.5
Translation: 0x0809 0x04b0

AIT:Trojan.Nymeria.6000 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanAIT:Trojan.Nymeria.6000
FireEyeGeneric.mg.b84ff5bfc024fbaa
SkyhighBehavesLike.Win32.TrojanAitInject.th
Cylanceunsafe
SangforVirus.Win32.Save.a
VirITTrojan.Win32.AutoIt_Heur.A
SymantecTrojan.Gen.MBT
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Injector.Autoit.FYJ
CynetMalicious (score: 100)
APEXMalicious
BitDefenderAIT:Trojan.Nymeria.6000
EmsisoftAIT:Trojan.Nymeria.6000 (B)
VIPREAIT:Trojan.Nymeria.6000
Trapminemalicious.high.ml.score
SophosMal/Generic-S
IkarusTrojan.Autoit
WebrootW32.Trojan.Gen
VaristW32/AutoIt.ON.gen!Eldorado
Antiy-AVLTrojan[Packed]/Win32.Autoit
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitAIT:Trojan.Nymeria.D1770 [many]
GDataAIT:Trojan.Nymeria.6000 (2x)
GoogleDetected
VBA32Trojan-Downloader.Autoit.gen
ALYacAIT:Trojan.Nymeria.6000
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware.AI.DDS
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Injector.AAE!tr
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Injector.AwlbYj

How to remove AIT:Trojan.Nymeria.6000?

AIT:Trojan.Nymeria.6000 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment