Malware

About “Nemesis.1559” infection

Malware Removal

The Nemesis.1559 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Nemesis.1559 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Nemesis.1559?


File Info:

crc32: 24055ED8
md5: 0bbbde480a3c5bfb43634ec0a9afb7de
name: 0BBBDE480A3C5BFB43634EC0A9AFB7DE.mlw
sha1: fb47907f37c495afac0e7f783f67595eff3934f2
sha256: aaa2dcb2a94844c7059c483090f4d28c0efc2993438ddfc22c6d4c0ec93c0562
sha512: 8d312fbbfbec0c37706024e46a57bd84ad4c7011ad024cc63f38b998be169ae9aef7e95ab0c9d5702aa0d464cc35a3f138c5a5fbff5938baef1377321582b158
ssdeep: 6144:Ds9sfA7vo5w0SCmKP9EvUxEyDzV78B7NeBc+8fP:y8kvo7XPTbEec
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Nemesis.1559 also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.Loader.845
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanSpy:Win32/Injector.be017bcb
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.f37c49
CyrenW32/Agent.CXX.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32NSIS/Injector.AMD
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Spy.Win32.Noon.gen
BitDefenderGen:Variant.Nemesis.1559
MicroWorld-eScanGen:Variant.Nemesis.1559
SophosTroj/Formbo-AKB
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.dc
FireEyeGeneric.mg.0bbbde480a3c5bfb
SentinelOneStatic AI – Malicious PE
AviraTR/AD.Swotter.mceai
MicrosoftTrojan:Win32/FormBook.AM!MTB
AegisLabTrojan.Win32.Noon.l!c
GDataWin32.Trojan-Stealer.FormBook.T2G9X9
McAfeeArtemis!0BBBDE480A3C
MAXmalware (ai score=82)
VBA32Trojan.Wacatac
TrendMicro-HouseCallTROJ_GEN.F0D1C00FE21
FortinetW32/Kryptik.J!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Nemesis.1559?

Nemesis.1559 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment