Malware

Nemesis.25850 (file analysis)

Malware Removal

The Nemesis.25850 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Nemesis.25850 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Nemesis.25850?


File Info:

name: 00BE7A641DB7D3A0BF8A.mlw
path: /opt/CAPEv2/storage/binaries/f2b53d4b4903f3cf92c4980f060cdb1ccc95075e76d5c8519cd11f4e87617452
crc32: 1B95C32D
md5: 00be7a641db7d3a0bf8a8521cd9cace6
sha1: 94ce14d4eb1d727a79144337be6741ad6ff03873
sha256: f2b53d4b4903f3cf92c4980f060cdb1ccc95075e76d5c8519cd11f4e87617452
sha512: 5eaae66136bf7d486c594a8657689a86cb8f37f494e36572fe64fdf1ec84733492edba4a3e1d09ee8a710ceac0aca2523da482dc2bbd6bfecfeb38b412497e4e
ssdeep: 98304:v7blDeLgmSEQSX4JmrEep3qYJFir0RfLitzKvQ4AcNvkcDHxxe67D/:v77mSLtV8qY64RfLK+Q4AaZxx3X/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F13633477093A4ECC6291AB250A2EBFB68F44A726F691315B3A01795F8F2FC45D0B317
sha3_384: 43dc3891c678ba4714821f6f54f31ec3e1268a0be59ae39a3b4b3a4fe8ae6d4d356d55821230566c3a9c437743e8f294
ep_bytes: 558bec81ecf40300005356576a205f33
timestamp: 2021-09-25 21:57:46

Version Info:

0: [No Data]

Nemesis.25850 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Nemesis.4!c
MicroWorld-eScanGen:Variant.Nemesis.25850
FireEyeGen:Variant.Nemesis.25850
ALYacGen:Variant.Nemesis.25850
Cylanceunsafe
SangforTrojan.Win32.Agent.Vh18
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Nemesis.25850
AvastNSIS:MalwareX-gen [Trj]
EmsisoftGen:Variant.Nemesis.25850 (B)
VIPREGen:Variant.Nemesis.25850
McAfee-GW-EditionBehavesLike.Win32.BadFile.rc
GDataGen:Variant.Nemesis.25850
ArcabitTrojan.Nemesis.D64FA
McAfeeArtemis!00BE7A641DB7
MAXmalware (ai score=89)
AVGNSIS:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Nemesis.25850?

Nemesis.25850 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment