Malware

Nemesis.77 (file analysis)

Malware Removal

The Nemesis.77 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Nemesis.77 virus can do?

  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Anomalous binary characteristics

Related domains:

www.google-analytics.com

How to determine Nemesis.77?


File Info:

crc32: DFEC6FAF
md5: 269452f12338d1a4c0bea43c9768df8a
name: 269452F12338D1A4C0BEA43C9768DF8A.mlw
sha1: e096e5a67da57e06f1dbe3450b069cbd720363dd
sha256: 19862a3b705794a57e3c2804b4328157ca0316b8925d48ebe9fd68fa4963a6c9
sha512: 0b473243ac5a9fed396cd6e25007e15fd2cf843af1e64a8404ae5407e105b8cf02bcb7c057f85d9708ac44ea827000cb011b4121a72f3b2309613697922d3b43
ssdeep: 49152:QBhJqAP+WtYSMGafH0p5JWYn3m6mn3ilygNEyXhL3/+:Q70S+WejBsbWY3m6mnyl/EyXp3/+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Nemesis.77 also known as:

K7AntiVirusAdware ( 0052b3481 )
DrWebPython.Bot.71
CynetMalicious (score: 99)
ALYacGen:Variant.Nemesis.77
CylanceUnsafe
ZillyaAdware.PBot.Win32.36
SangforAdware.Win32.Generic.ky
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/Python.1401e05f
K7GWAdware ( 0052b3481 )
Cybereasonmalicious.12338d
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastNSIS:Pbot-A [Trj]
Kasperskynot-a-virus:HEUR:AdWare.Python.PBot.gen
BitDefenderGen:Variant.Nemesis.77
NANO-AntivirusRiskware.Win32.PBot.fftizb
MicroWorld-eScanGen:Variant.Nemesis.77
TencentWin32.Adware.Generic.Hrpc
SophosGeneric PUA OA (PUA)
ComodoApplicUnwnt@#kiamvxn42c5s
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
FireEyeGeneric.mg.269452f12338d1a4
EmsisoftGen:Variant.Nemesis.77 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1107062
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Nemesis.77
AhnLab-V3PUP/Win32.PBot.R226081
McAfeeArtemis!269452F12338
MAXmalware (ai score=95)
VBA32Adware.Python
MalwarebytesTrojan.Agent.RU
TrendMicro-HouseCallTROJ_GEN.R002H07JV21
YandexPUA.Agent!oJBmf/x0f8E
MaxSecureWin.MxResIcn.Heur.Gen
AVGNSIS:Pbot-A [Trj]

How to remove Nemesis.77?

Nemesis.77 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment