Malware

Nemesis.1285 information

Malware Removal

The Nemesis.1285 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Nemesis.1285 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Creates RWX memory
  • Reads data out of its own binary image
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Nemesis.1285?


File Info:

crc32: D99E422D
md5: 5fe169b672f4f67a9557b47a65e74a9a
name: 5FE169B672F4F67A9557B47A65E74A9A.mlw
sha1: 686585fb825439b73727e55f8713754c994a3d7e
sha256: 89151361e933b16598aec860641be8ac95174db2e08791071f81e8b88e1c4b7e
sha512: 00598372a80059ca58d3f84d6eecaf6376d4c1a8b68ae5579ee9c3140754b68f39062eade66e5edc61405cbe476f696f48f1ff6506fb0cfc0e7518c3f2995d67
ssdeep: 6144:7kyacPkoWPqyhC/lnzr4gJNqH6lDsuiwp3bbN06j:7k2tSBhoz0gJNqluZ3b55j
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Nemesis.1285 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0052cbe51 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.30538574
CylanceUnsafe
SangforTrojan.Win32.GenericKD.30538574
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 0052cbe51 )
Cybereasonmalicious.672f4f
SymantecTrojan.Smoaler
ESET-NOD32a variant of Generik.LQGRTR
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Packer.MalwareCrypter-6642003-1
KasperskyTrojan-Ransom.Win32.Blocker.kxwx
BitDefenderGen:Variant.Nemesis.1285
NANO-AntivirusTrojan.Win32.Inject.facetk
ViRobotTrojan.Win32.S.Inject.246307
MicroWorld-eScanGen:Variant.Nemesis.1285
TencentWin32.Trojan.Blocker.Tbsr
SophosMal/Generic-S
ComodoMalware@#3iirwzdk7sr9l
F-SecureHeuristic.HEUR/AGEN.1130662
BitDefenderThetaGen:NN.ZedlaF.34670.eu8@aG4OtEei
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FRS.VSN0BD18
McAfee-GW-EditionBehavesLike.Win32.Dropper.dc
FireEyeGeneric.mg.5fe169b672f4f67a
EmsisoftGen:Variant.Nemesis.1285 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1102525
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitTrojan.Nemesis.D505
ZoneAlarmTrojan-Ransom.Win32.Blocker.kxwx
GDataTrojan.GenericKD.30538574
AhnLab-V3Trojan/Win32.Tepfer.C2450768
McAfeeGeneric.drn
MAXmalware (ai score=98)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_FRS.VSN0BD18
RisingTrojan.Injector!8.C4 (CLOUD)
YandexTrojan.Injector!nDSy0Z2vSNY
IkarusTrojan.Win32.Injector
FortinetW32/Injector.DZBM!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Nemesis.1285?

Nemesis.1285 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment