Malware

Kazy.58436 information

Malware Removal

The Kazy.58436 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Kazy.58436 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Kazy.58436?


File Info:

name: 5F0F4E00240EA1F55784.mlw
path: /opt/CAPEv2/storage/binaries/526ad992feb206e2133f0bc93b27953a2681fa2b9d3be2630450e52de934aa95
crc32: 163399A3
md5: 5f0f4e00240ea1f55784ea5b5110abe9
sha1: fe8ce291114c1f58589afc5d29fa9bec4c9dae6b
sha256: 526ad992feb206e2133f0bc93b27953a2681fa2b9d3be2630450e52de934aa95
sha512: 19bf0efcda3459ae84fe3aa84b6b8716a67c92f559ebb5d46b05d0b7f938610826f98f6c6a990fff3ea4fbbbad29509439708c1d26efec030b96c5a8e7652d75
ssdeep: 1536:4aFXPgRBJgXzlS2o3YLHqI/yBKd/24RoAzx:4a1EBJgXzxo38HF/yow4hzx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T103749D6272D0C8B3D92B0B7049B757A6D6FEBA10012557431B949F7FE839243CD1E2AA
sha3_384: 3081eafa39946a2ceddef1beb7e666edec3c0a624c91807418e23103af016d2bf842fdce4c900d520676b86c2fdd42b9
ep_bytes: 81ec7c01000053555633f65789742418
timestamp: 2006-04-07 17:59:26

Version Info:

0: [No Data]

Kazy.58436 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Kazy.58436
ALYacGen:Variant.Kazy.58436
CylanceUnsafe
K7AntiVirusTrojan ( 004bcce41 )
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.0240ea
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderGen:Variant.Kazy.58436
RisingMalware.Heuristic!ET#95% (RDMK:cmRtazoaem8OeLiGQC6m0kCNK0PS)
Ad-AwareGen:Variant.Kazy.58436
EmsisoftGen:Variant.Kazy.58436 (B)
McAfee-GW-EditionBehavesLike.Win32.Dropper.fz
FireEyeGeneric.mg.5f0f4e00240ea1f5
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Kazy.58436
eGambitUnsafe.AI_Score_96%
AviraTR/Patched.Ren.Gen2
ArcabitTrojan.Kazy.DE444
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!5F0F4E00240E
MAXmalware (ai score=82)
Ikarusnot-a-virus:Porn-Dialer.Win32.Generic
AVGWin32:dUmPeX [Susp]
AvastWin32:dUmPeX [Susp]

How to remove Kazy.58436?

Kazy.58436 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment