Rootkit

Rootkit.55461 information

Malware Removal

The Rootkit.55461 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Rootkit.55461 virus can do?

  • Loads a driver
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Anomalous binary characteristics

How to determine Rootkit.55461?


File Info:

crc32: 425B2B42
md5: 9efba6472bd90d58690c33014099ad8f
name: 9EFBA6472BD90D58690C33014099AD8F.mlw
sha1: 90fd1e266a28b3ce6cb21f41c26f165944b2ee18
sha256: 96df4a7cce14ed471c599f2b49f8bb8cbe5b44d6bd8bff39e3b759a81bf698d2
sha512: 66c0e123975341447105ee19a8c1378e5fee7f087934d8b5f5b19161d2ebfcb9c756bc10225ee9748bf159bbaa1660071e94ba3f12af15f85705eaac44608231
ssdeep: 3072:UXtXCazEX4EEsybIKb+80CtknFGne8bV5XTCXXek488z7KSPWGWx8FyvmB+:CaV1ybj+r4BV9ToRJ2aOFy++
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Rootkit.55461 also known as:

BkavW32.AIDetectVM.malware2
K7AntiVirusTrojan ( 0000000c1 )
Elasticmalicious (high confidence)
DrWebTool.Siggen.8267
CynetMalicious (score: 100)
ALYacRootkit.55461
CylanceUnsafe
ZillyaRootkit.Agent.Win32.13964
SangforMalware
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaRootkit:Win32/Obfuscator.4b638437
K7GWTrojan ( 0000000c1 )
Cybereasonmalicious.72bd90
SymantecBackdoor.Trojan
ESET-NOD32a variant of Win32/Packed.KByS.A suspicious
APEXMalicious
AvastWin32:Rootkit-gen [Rtk]
ClamAVWin.Dropper.Small-1986
KasperskyRootkit.Win32.Agent.dglw
BitDefenderRootkit.55461
NANO-AntivirusTrojan.Win32.NtRootKit.zewid
MicroWorld-eScanRootkit.55461
TencentWin32.Rootkit.Agent.Hznn
Ad-AwareRootkit.55461
SophosGeneric PUA GI (PUA)
ComodoMalware@#1r1e1l94z2zsz
F-SecureTrojan.RKIT/Agent.229376.1
VIPRETrojan.Win32.Generic!BT
InvinceaMal/Generic-S + Mal/Generic-L
McAfee-GW-EditionBehavesLike.Win32.Rootkit.dh
FireEyeGeneric.mg.9efba6472bd90d58
EmsisoftRootkit.55461 (B)
SentinelOneDFI – Suspicious PE
JiangminRootkit.Agent.osp
WebrootW32.Malware.Gen
AviraRKIT/Agent.229376.1
eGambitUnsafe.AI_Score_82%
Antiy-AVLTrojan/Win32.Genome
MicrosoftTrojan:Win32/Ymacco.ABBF
ArcabitRootkit.DD8A5
ZoneAlarmRootkit.Win32.Agent.dglw
GDataRootkit.55461
TACHYONTrojan/W32.Rootkit.270336.I
AhnLab-V3Backdoor/Win32.Agent.R125217
McAfeeArtemis!9EFBA6472BD9
MAXmalware (ai score=87)
VBA32Trojan.VB
PandaGeneric Malware
RisingMalware.UDM(VB)!1.64C9 (CLASSIC)
YandexTrojan.GenAsa!IxCjGUP+XFU
IkarusVirus.Win32.Delf.APJ
MaxSecureTrojan.Malware.101593822.susgen
FortinetW32/Rootkit_Agent.NWW
AVGWin32:Rootkit-gen [Rtk]
Paloaltogeneric.ml
Qihoo-360HEUR/Malware.QVM06.Gen

How to remove Rootkit.55461?

Rootkit.55461 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment