Malware

Should I remove “Nemesis.1874”?

Malware Removal

The Nemesis.1874 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Nemesis.1874 virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Nemesis.1874?


File Info:

name: 034DEEAF0DAD88ABF5D6.mlw
path: /opt/CAPEv2/storage/binaries/96e2852b9833150d93ea70ffae42bd0f395403a3ef0b47b1ce2d4c511997d9db
crc32: 1AF1E7F8
md5: 034deeaf0dad88abf5d6ee2214e33c88
sha1: 34554ae4e22e01a52be280ebef138b8f8df3701f
sha256: 96e2852b9833150d93ea70ffae42bd0f395403a3ef0b47b1ce2d4c511997d9db
sha512: d64d8843fcc7e74144a15936e27fdbd86eeca73c601ac372b161aff43161e479bc2acbe8cf71b20fdf7bf0e34849ba7adaf018d40dcf5fb609918966dd400d4b
ssdeep: 98304:ueXGrYtS4YgwFiqjm6vLYxCxGW3FVjnuJcSMsTGb2v8DcXbKLWcKMg:uIkYtS4twljpwY1ulMW0DcYe
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DB36336E3F4AC2B0E8CF4632627A81B69DF3D88427C57A3746A5F7671839684140C7F9
sha3_384: fd78604aa5183f9d04836a935b6278896fb0525110d02389d14c2550cc69aa31685cd12ef61334257ba5087f25c12401
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-06-18 21:33:23

Version Info:

CompanyName: 厦门富横网络有限公司
FileDescription: 一键GHOST硬盘版安装程序
FileVersion: 12.1.656.1115
InternalName: 一键GHOST
LegalCopyright: (C) yjhyjl.com All Rights Reserved.
OriginalFilename: 一键GHOST硬盘版.exe
ProductName: 一键GHOST硬盘版 12.1.656.1115正式版
ProductVersion: 12.1.656.1115
Translation: 0x0000 0x03a8

Nemesis.1874 also known as:

MicroWorld-eScanGen:Variant.Nemesis.1874
FireEyeGen:Variant.Nemesis.1874
ALYacGen:Variant.Nemesis.1874
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
SymantecTrojan.Gen.2
ClamAVWin.Worm.Runouce-343
KasperskyHEUR:Trojan.Win32.Fsysna.gen
BitDefenderGen:Variant.Nemesis.1874
NANO-AntivirusTrojan.Win32.Agent.cysqzs
DrWebProgram.Unwanted.4598
McAfee-GW-EditionBehavesLike.Win32.Dropper.rc
EmsisoftGen:Variant.Nemesis.1874 (B)
GDataGen:Variant.Nemesis.1874
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
CynetMalicious (score: 100)
McAfeeArtemis!034DEEAF0DAD
MAXmalware (ai score=81)
VBA32Trojan.Fsysna
MalwarebytesMalware.AI.268670742
PandaTrj/CI.A

How to remove Nemesis.1874?

Nemesis.1874 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment