Malware

Generic.Nimda.D961EB1F removal

Malware Removal

The Generic.Nimda.D961EB1F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Nimda.D961EB1F virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Anomalous binary characteristics

How to determine Generic.Nimda.D961EB1F?


File Info:

crc32: 1D992E0C
md5: c3a5c673ddb1c3ada699e8356f0ae8ba
name: C3A5C673DDB1C3ADA699E8356F0AE8BA.mlw
sha1: 0dcddbeceecee315acdb413a040b0fba52c3ab9b
sha256: 0455d07fea5c9f7520b46592c5d137374a690ef0d140351b44edf3d6f8de02cb
sha512: d3642eb2c16648e3d9e124db08ad6cbc680196e26ca3d1f9e15a465f08d6f31bfad2b6e0f7a7ecbef69d857775767d5c7f6e13b93b703e133c0d5dfa0dcdc130
ssdeep: 24576:2TWHhEbYjZgTzCQgRGVFBgYaVrUsCwnTh/g15n:gWhaHCJlfCwnTh/I5n
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2015 baidu.COM. All rights reserved.
InternalName: kernelUpdate
FileVersion: 1.0.0.9
CompanyName: BAIDU.COM
ProductVersion: 1.0.0.9
OriginalFilename: autoDiagnoseUpdate.exe
Translation: 0x0804 0x04b0

Generic.Nimda.D961EB1F also known as:

K7AntiVirusTrojan ( 0008d46e1 )
DrWebJS.Nimda
ALYacGeneric.Nimda.D961EB1F
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7GWTrojan ( 0008d46e1 )
Cybereasonmalicious.3ddb1c
BaiduWin32.Trojan.Agent.bf
CyrenW32/Thecid.A!Generic
SymantecIFrame.Exploit
AvastWin32:Agent-BARL [Trj]
ClamAVWin.Worm.Brontok-88
KasperskyHEUR:Virus.Win32.Chir.gen
BitDefenderGeneric.Nimda.D961EB1F
MicroWorld-eScanGeneric.Nimda.D961EB1F
TencentVirus.Win32.ChineseHackerRes.a
Ad-AwareGeneric.Nimda.D961EB1F
SophosMal/Generic-S
ComodoEmailWorm.Win32.Runonce.~v001@1qup51
VIPREWin32.Chir.b!dam (v)
McAfee-GW-EditionW32/Chir.gen!remnants
FireEyeGeneric.Nimda.D961EB1F
EmsisoftGeneric.Nimda.D961EB1F (B)
JiangminWorm/AutoRun.eqe
AviraW32/Chir.B
Antiy-AVLTrojan/Generic.ASVirus.1FE
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmHEUR:Virus.Win32.Chir.gen
GDataGeneric.Nimda.D961EB1F
McAfeeW32/Chir.gen!remnants
MAXmalware (ai score=86)
MalwarebytesChir.Virus.FileInfector.DDS
PandaW32/Chir.P.worm
IkarusEmail-Worm.Win32.Runouce
MaxSecureVirus.W32.Runouce.B
FortinetW32/Runouce.B!tr
AVGWin32:Agent-BARL [Trj]

How to remove Generic.Nimda.D961EB1F?

Generic.Nimda.D961EB1F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment