Malware

What is “BAT/KillFiles.NPV”?

Malware Removal

The BAT/KillFiles.NPV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BAT/KillFiles.NPV virus can do?

  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine BAT/KillFiles.NPV?


File Info:

crc32: 960335A2
md5: c38ce8bacaf4d750de5e571635c2fbf7
name: C38CE8BACAF4D750DE5E571635C2FBF7.mlw
sha1: 57d4a8b1bd6ea8f29b310c995a9f232fa0c1f799
sha256: 12ccaade3c8fa9eacd0248318df53ad4404389f0a23fddfd28992ce71461865a
sha512: 6174be409d8a4db05e6e6c836a6c4622168b9d5b37e25c0cf2e8005b7d651221cb311de29f6137d77052eca36285b3abb94b49163ed42d21137e7312c141f95d
ssdeep: 1536:H7fbN3eEDhDPA/pICdUkbBtW7upvaLU0bI5taxKo0IOlnToIfHwnhOX:b7DhdC6kzWypvaQ0FxyNTBfHI2
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BAT/KillFiles.NPV also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Encoder.trrL
Elasticmalicious (high confidence)
CAT-QuickHealTrojan.GenericPMF.S15043657
ALYacGen:Heur.Bat.1
SangforTrojan.Win32.Save.a
BitDefenderGen:Heur.Bat.1
Cybereasonmalicious.1bd6ea
CyrenW32/Kryptik.AYO.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32BAT/KillFiles.NPV
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Encoder.kit
AlibabaTrojan:BAT/KillFiles.d2b4d314
MicroWorld-eScanGen:Heur.Bat.1
Ad-AwareGen:Heur.Bat.1
BitDefenderThetaGen:NN.ZexaF.34266.fuW@aSf6Fvi
FireEyeGeneric.mg.c38ce8bacaf4d750
EmsisoftGen:Heur.Bat.1 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_83%
Antiy-AVLTrojan/Generic.ASMalwS.2B9E7F9
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Trojan.BSE.Z8D92P
TACHYONRansom/W32.Encoder.91648
McAfeeArtemis!C38CE8BACAF4
MAXmalware (ai score=83)
RisingTrojan.Generic@ML.97 (RDML:8lHudzPcrKKE77/4DBPpkw)
IkarusTrojan.Win32.Occamy
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Encoder.KIT!tr
Paloaltogeneric.ml

How to remove BAT/KillFiles.NPV?

BAT/KillFiles.NPV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment