Risk

About “RiskTool.BAT.Shutdown” infection

Malware Removal

The RiskTool.BAT.Shutdown is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskTool.BAT.Shutdown virus can do?

  • Uses Windows utilities for basic functionality
  • Attempts to restart the guest VM
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine RiskTool.BAT.Shutdown?


File Info:

crc32: 1F517E19
md5: 378bdd10cd367382f2d68cb6c3d8f8f3
name: 378BDD10CD367382F2D68CB6C3D8F8F3.mlw
sha1: bd1142ecf7d8c99ad09c17ac02d810b1ac33b423
sha256: 1f49c1dbda4863ec14cd0a3fe449cb2945b46548d98fc4ff7d63efdb2746b3fe
sha512: 0c7d46a24a417e4d0fd435ed0cef697c94d9d1d18e2c54170c1c17083ddb428c766147672f839d20513374058fb9a9e2a3a0fa3f06ee079c489e012f1555850e
ssdeep: 1536:gw7ftfkS5g9YOms+gZcQipICdXkNDqLLZX9lItVGL++eIOlnToIfZwpOl:gOFfHgTWmCRkGbKGLeNTBfZt
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

RiskTool.BAT.Shutdown also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
CAT-QuickHealTrojan.GenericPMF.S17216069
SangforTrojan.Win32.Save.a
CyrenW32/Nitol.AB.gen!Eldorado
SymantecML.Attribute.HighConfidence
Kasperskynot-a-virus:RiskTool.BAT.Shutdown.gen
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
FireEyeGeneric.mg.378bdd10cd367382
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmnot-a-virus:RiskTool.BAT.Shutdown.gen
TACHYONTrojan-Dropper/W32.Scrop.90624
AhnLab-V3Malware/Gen.Reputation.C4340776
McAfeeArtemis!378BDD10CD36
Paloaltogeneric.ml

How to remove RiskTool.BAT.Shutdown?

RiskTool.BAT.Shutdown removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment