Malware

How to remove “Kazy.58576”?

Malware Removal

The Kazy.58576 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Kazy.58576 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

Related domains:

3C-97-0E-21-0B-32TK4fdiPvO6.45nb.com
3C-97-0E-21-0B-32HVsoooFcTk.45nb.com

How to determine Kazy.58576?


File Info:

crc32: BD3B4FB8
md5: e0ad7f2df9682896059ddf206a8689e7
name: E0AD7F2DF9682896059DDF206A8689E7.mlw
sha1: db50089d80d137d6db541e22b9a7b86efe13d90a
sha256: 1e2b6d9a2b58fb57fba35e0e427c4c5446f4ca77b8019027223fb04e165674e6
sha512: 450051ee26760ff303277d75e09a8eb159c954bc22348e067266ee660d169cb699237ab4341f4fb6fec178257c4425180ee076c710a8252fd76a3007ff3913f2
ssdeep: 1536:KVvIAHRXFf6q/aHrljN4wErQIElkb0lsNyPG2tELv+mmFx39gA7Lnt38A/uHWH05:lAHzSTLK03lWMijuxtRntMAS1zI4H5
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2011
InternalName: FlowBrower
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: FlowBrower x5e94x7528x7a0bx5e8f
ProductVersion: 1, 0, 0, 1
FileDescription: FlowBrower Microsoft x57fax7840x7c7bx5e94x7528x7a0bx5e8f
OriginalFilename: FlowBrower.EXE
Translation: 0x0804 0x04b0

Kazy.58576 also known as:

K7AntiVirusTrojan ( 005718811 )
LionicTrojan.Win32.Agent.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoad3.7444
CynetMalicious (score: 100)
ALYacGen:Variant.Kazy.58576
CylanceUnsafe
ZillyaTrojan.Agent.Win32.256074
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/ATRAPS.f4993e90
K7GWTrojan ( 005718811 )
Cybereasonmalicious.df9682
CyrenW32/A-42ce7d43!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.TUB
APEXMalicious
AvastWin32:Atraps-NQ [Trj]
ClamAVWin.Trojan.Agent-364276
KasperskyTrojan.Win32.Agent.svdb
BitDefenderGen:Variant.Kazy.58576
NANO-AntivirusTrojan.Win32.MlwGen.smhgq
ViRobotTrojan.Win32.A.Agent.112128.S[UPX]
MicroWorld-eScanGen:Variant.Kazy.58576
TencentTrojan.Win32.IEClick.qa
Ad-AwareGen:Variant.Kazy.58576
SophosMal/Behav-044
ComodoTrojWare.Win32.Agent.svdb@4s59y1
BitDefenderThetaGen:NN.ZexaF.34266.hmLfamREhvnb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXCK-IT!BB62A7409C06
FireEyeGeneric.mg.e0ad7f2df9682896
EmsisoftGen:Variant.Kazy.58576 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Genome.bshk
WebrootW32.Trojan.Gen
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Generic.ASMalwS.18A2EE1
KingsoftHeur.SSC.623466.1216.(kcloud)
MicrosoftTrojan:Win32/Occamy.C
GDataGen:Variant.Kazy.58576
McAfeeArtemis!E0AD7F2DF968
MAXmalware (ai score=84)
VBA32Trojan.Genome.af
PandaTrj/CI.A
YandexTrojan.GenAsa!6YLZKaWFJto
IkarusTrojan.Win32.Agent
MaxSecurenot-a-virus:HEUR:AdWare.Win32.Amonetize.fp
FortinetW32/Agent.TWUB!tr
AVGWin32:Atraps-NQ [Trj]
Paloaltogeneric.ml

How to remove Kazy.58576?

Kazy.58576 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment