Malware

Nemesis.1242 information

Malware Removal

The Nemesis.1242 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Nemesis.1242 virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Nemesis.1242?


File Info:

crc32: 95594692
md5: 7f6328d720eba605c4e06325e0337f79
name: 7F6328D720EBA605C4E06325E0337F79.mlw
sha1: 15ae57780d7f5c75937ed0bc8268d09094b262d2
sha256: 9da4dcbaeacef69514b7576eb1a9af401d3dfd354a2d12e9a0e7b8b7e4db2703
sha512: 27d09c9278d643f024c8df2cef6c0241549518b2bfb525640c8233afca99e7070fd0d381f68be0eb69786aaa52305c4a985ac9810994941b146dac7fa4f11b67
ssdeep: 6144:K11QhfElzSUEyiJPo0o9FQw1klLXC+BgSmRo7J+EssUb7ARNE:L8leyUPovJOC++NRwsR/YNE
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: Copyright saprobic index
FileVersion: 79.26.62.89
CompanyName: arithmetic
LegalTrademarks: close-minded
Comments: Buol
ProductName: significantly
FileDescription: Ngaslawe Spoken
Translation: 0x0409 0x04e4

Nemesis.1242 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Nemesis.1242
FireEyeGeneric.mg.7f6328d720eba605
McAfeeArtemis!7F6328D720EB
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGen:Variant.Nemesis.1242
CyrenW32/Injector.AEY.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Backdoor.Win32.Remcos.gen
AlibabaTrojan:Win32/SpyNoon.1e100b4a
EmsisoftGen:Variant.Nemesis.1242 (B)
McAfee-GW-EditionBehavesLike.Win32.ICLoader.fc
SophosML/PE-A
JiangminTrojan.Generic.gthqm
AviraTR/AD.BDSNanoCoreClient.pfmzo
Antiy-AVLTrojan[Spy]/MSIL.Agent
MicrosoftTrojan:Win32/SpyNoon.SS!MTB
GridinsoftTrojan.Win32.Downloader.oa!s1
ArcabitTrojan.Nemesis.D4DA
ZoneAlarmHEUR:Backdoor.Win32.Remcos.gen
GDataGen:Variant.Nemesis.1242
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Androm.R367639
MAXmalware (ai score=81)
MalwarebytesMalware.Heuristic.1003
ESET-NOD32a variant of Win32/Injector.EORZ
RisingTrojan.Injector!8.C4 (CLOUD)
SentinelOneStatic AI – Suspicious PE
FortinetW32/Stealer.IO68!tr
AVGWin32:RATX-gen [Trj]
Cybereasonmalicious.80d7f5
Paloaltogeneric.ml
Qihoo-360HEUR/QVM20.1.9257.Malware.Gen

How to remove Nemesis.1242?

Nemesis.1242 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment