Malware

Should I remove “BAT/KillFiles.NQP”?

Malware Removal

The BAT/KillFiles.NQP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BAT/KillFiles.NQP virus can do?

  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine BAT/KillFiles.NQP?


File Info:

crc32: C1D716D5
md5: 631f94829807c82b0304a0ccf1637702
name: 631F94829807C82B0304A0CCF1637702.mlw
sha1: add8293a5c1ecaf9932686b7af5db69500cf7961
sha256: 64e259786058c3a4ef7d41c453a36ba506b6e2634d46fbc145280e269aa58533
sha512: 893ec47b9ef5a4dd7a69801a3928de81ae27777bd980527d96b3815f738e1b9f8030330c62820aa15f72addc0b8b1730c6b0c76f53847b010438684579e2552f
ssdeep: 1536:z7fPGykbOqjoHm4pICdfkLtAfupcWX50MxFY+yIOlnToIfxxE1S:vq6+ouCpk2mpcWJ0r+QNTBfxOw
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BAT/KillFiles.NQP also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00579d421 )
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.45987933
CylanceUnsafe
ZillyaTool.Lazagne.Win32.102
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00579d421 )
Cybereasonmalicious.29807c
CyrenW32/Trojan.BHED-0053
SymantecML.Attribute.HighConfidence
ESET-NOD32BAT/KillFiles.NQP
ZonerTrojan.Win32.85523
APEXMalicious
AvastWin32:Trojan-gen
BitDefenderTrojan.GenericKD.45987933
MicroWorld-eScanTrojan.GenericKD.45987933
Ad-AwareTrojan.GenericKD.45987933
SophosMal/Generic-S
ComodoMalware@#3cvoivw9ef487
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.VIGORF.USASHDA21
McAfee-GW-EditionBehavesLike.Win32.Ransom.mh
FireEyeGeneric.mg.631f94829807c82b
EmsisoftTrojan.GenericKD.45987933 (B)
JiangminTrojan.PowerShell.bj
eGambitUnsafe.AI_Score_84%
Antiy-AVLTrojan/Generic.ASMalwS.2B9EB3B
MicrosoftTrojan:Script/Phonzy.A!ml
ArcabitTrojan.Generic.D2BDB85D
AegisLabTrojan.Win32.Tiny.trFe
GDataWin32.Trojan.PSE.1COOEVR
TACHYONTrojan/W32.KillFiles.89600
McAfeeArtemis!631F94829807
MAXmalware (ai score=84)
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTrojan.Win32.VIGORF.USASHDA21
RisingTrojan.KillFiles!8.6C1 (CLOUD)
IkarusTrojan.BAT.KillFiles
MaxSecureTrojan.Malware.300983.susgen
FortinetBAT/KillFiles.NQP!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove BAT/KillFiles.NQP?

BAT/KillFiles.NQP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment