Malware

Nemesis.1260 (file analysis)

Malware Removal

The Nemesis.1260 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Nemesis.1260 virus can do?

  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Nemesis.1260?


File Info:

crc32: BADB99EA
md5: 3b5e3aaeba8bde49a920186a8030cadc
name: 3B5E3AAEBA8BDE49A920186A8030CADC.mlw
sha1: 8cd12b26b0e04db375652cc61ebbed4dcfae1a43
sha256: 1a35d6204afbac202222a10d328cc79b33d84e8d3d53b88ee14a93e3392d027c
sha512: 923a2d420b2a445f592eb6f2cd981b0d66fc44b97d56e6a41bfedc9863e6acee814385746914ce942b427aa1ae5b7368281d4de28c341182cb981586429a298a
ssdeep: 6144:8B+pgUHuSEIn1aI2mxy04za0og1WEM+HUwrzDaHOMasCNXjZrfWGCKN2LF9RUlO3:8gndnooR4za0og1PvH3aHOZdNXdKo2Ln
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: (c) 2018 Polarity Technologies Ltd
FileVersion: 2.30.0.1
CompanyName: Polarity Technologies Ltd
ProductName: Desktop Search Bar
ProductVersion: 2.30.0.1
FileDescription: Desktop web search
OriginalFilename: SBInstaller
Translation: 0x0409 0x0000

Nemesis.1260 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebAdware.Spigot.149
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.962540
CylanceUnsafe
ZillyaTool.WebToolbar.Win32.36
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/InstaFast.8683c88c
K7GWRiskware ( 0040eff71 )
APEXMalicious
AvastWin32:AdwareSig [Adw]
ClamAVWin.Trojan.Generic-6931301-0
Kasperskynot-a-virus:HEUR:AdWare.Win32.InstaFast.gen
BitDefenderGen:Variant.Nemesis.1260
MicroWorld-eScanGen:Variant.Nemesis.1260
TencentWin32.Adware.Instafast.Lkxy
SophosBrowserIO (PUA)
ComodoApplication.Win32.BrowserIO.C@7v8oon
McAfee-GW-EditionBehavesLike.Win32.Browser.fc
FireEyeGeneric.mg.3b5e3aaeba8bde49
EmsisoftGen:Variant.Nemesis.1260 (B)
SentinelOneStatic AI – Malicious PE
AviraADWARE/SearchSetter.vzbiu
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Nemesis.D4EC
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.InstaFast.gen
GDataGen:Variant.Razy.962540
AhnLab-V3PUP/Win32.WebToolbar.R241845
Acronissuspicious
McAfeeArtemis!3B5E3AAEBA8B
MAXmalware (ai score=100)
VBA32Adware.InstaFast
MalwarebytesAdware.BrowserIO
PandaTrj/CI.A
RisingAdware.BrowserIO!1.B395 (CLASSIC)
YandexPUA.InstaFast!E+L0fiyR62c
FortinetRiskware/BrowserIO
AVGWin32:AdwareSig [Adw]
Paloaltogeneric.ml

How to remove Nemesis.1260?

Nemesis.1260 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment