Categories: Worm

IRC-Worm.Generic.24658 malicious file

The IRC-Worm.Generic.24658 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IRC-Worm.Generic.24658 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Installs a browser addon or extension
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Anomalous binary characteristics

How to determine IRC-Worm.Generic.24658?


File Info:

crc32: 138D826Amd5: b4fd44c80fbc52723926f9b5c975f12bname: B4FD44C80FBC52723926F9B5C975F12B.mlwsha1: 6a5209cc26692f909f3bc6661a85f05022563d9asha256: 9134d55ecaa2bc285d1b788a3c0728838805c211dd1e1e1a9bfe92e9f8deaaf8sha512: dd93456de42c5827f964828145e07466c0e2c79a12b45a7903b0510e0cd5096cee8aedf130e97db65876dd82b06ffc2b1447e982d4283718cb13e78e816bf518ssdeep: 6144:qPnar29D4dGaMa0NZZ+EoKUGjx9W+3vxTzJV0rQ:qPaYD4dG5NZiOkulv0Mtype: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0409 0x04b0ProductVersion: 1.00InternalName: pikachuFileVersion: 1.00OriginalFilename: pikachu.exeProductName: Project1

IRC-Worm.Generic.24658 also known as:

Bkav W32.PikachuGTA.Worm
TotalDefense Win32/Chupika.A
MicroWorld-eScan IRC-Worm.Generic.24658
CAT-QuickHeal Worm.Chupik.A3
ALYac IRC-Worm.Generic.24658
Malwarebytes Trojan.Agent
Zillya Worm.VB.Win32.2095
CrowdStrike malicious_confidence_100% (D)
K7GW Backdoor ( 04c504381 )
K7AntiVirus Backdoor ( 04c504381 )
TrendMicro WORM_VB.SMLF
Baidu Win32.Trojan.Agent.at
Cyren W32/Worm.LPKA-4508
Symantec W32.SillyFDC
ESET-NOD32 Win32/VB.NSP
Zoner I-Worm.VB.NSP
TheHacker W32/VB.aso
Avast Win32:Sality
ClamAV Legacy.Trojan.Agent-1388589
Kaspersky Trojan.Win32.Cosmu.dhrn
BitDefender IRC-Worm.Generic.24658
NANO-Antivirus Trojan.Win32.MulDrop2.crsvig
ViRobot Worm.Win32.VB.110592.B[h]
SUPERAntiSpyware Trojan.Agent/Gen-Pikachu
Tencent Worm.Win32.Autorun.d
Ad-Aware IRC-Worm.Generic.24658
Sophos Mal/VB-F
Comodo Worm.Win32.Autorun.eb0
F-Secure IRC-Worm.Generic.24658
DrWeb Trojan.MulDrop2.63234
VIPRE Trojan.Win32.Generic!BT
Invincea worm.win32.autorun.tz
McAfee-GW-Edition BehavesLike.Win32.VBObfus.fc
Emsisoft IRC-Worm.Generic.24658 (B)
F-Prot W32/Worm.APUJ
Jiangmin Worm/VB.auk
Avira TR/Crypt.ULPM.Gen
Antiy-AVL Worm/Win32.VB
Microsoft Worm:Win32/Chupik.A
Arcabit IRC-Worm.Generic.D6052
AegisLab W32.W.VB.aso!c
GData IRC-Worm.Generic.24658
AhnLab-V3 Trojan/Win32.Cosmu.N585957003
McAfee W32/Worm-FEL!B4FD44C80FBC
AVware Trojan.Win32.Generic!BT
VBA32 Worm.VB
TrendMicro-HouseCall WORM_VB.SMLF
Rising Malware.Heuristic!ET (rdm+)
Yandex Worm.Chupik!EXA4Vn+0eQg
Ikarus Worm.Win32.VB
Fortinet W32/VB.SDE!tr
AVG Worm/VB.BFJZ
Panda W32/Picachu.A.worm
Qihoo-360 Malware.Radar01.Gen

How to remove IRC-Worm.Generic.24658?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Share
Published by
Paul Valéry

Recent Posts

Malware.AI.2131602206 removal

The Malware.AI.2131602206 is considered dangerous by lots of security experts. When this infection is active,…

26 seconds ago

About “Win32/Spy.Grandoreiro.CB” infection

The Win32/Spy.Grandoreiro.CB is considered dangerous by lots of security experts. When this infection is active,…

6 mins ago

BScope.TrojanSpy.Nivdort removal

The BScope.TrojanSpy.Nivdort is considered dangerous by lots of security experts. When this infection is active,…

11 mins ago

Zusy.539059 (file analysis)

The Zusy.539059 is considered dangerous by lots of security experts. When this infection is active,…

37 mins ago

Should I remove “Malware.AI.2865976862”?

The Malware.AI.2865976862 is considered dangerous by lots of security experts. When this infection is active,…

48 mins ago

Should I remove “Trojan-Clicker.Win32.Cycler.gq”?

The Trojan-Clicker.Win32.Cycler.gq is considered dangerous by lots of security experts. When this infection is active,…

58 mins ago