Malware

About “Win32.Towloh.1024” infection

Malware Removal

The Win32.Towloh.1024 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32.Towloh.1024 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Win32.Towloh.1024?


File Info:

crc32: B5AD62BD
md5: c477e270ba4cd410b33ea258cfa44db6
name: C477E270BA4CD410B33EA258CFA44DB6.mlw
sha1: 9f91a25dad65f6dc92e16a5d2cf087f32a4612ca
sha256: 55276a6099f55d3bb848a6c2a3f66a21c0770abd6f28099f91bb5892be2c0f89
sha512: 167e5531022d762a82121f5d4c794eae9faf9eb1c1f6019b340a4124fbea3415a25aa58d117a3502c6815d1ea5b5bc00aa32037055a6dcbd3d9ecf2a90f21155
ssdeep: 384:EO8RVV8MTYOhbvpTyP0pdG2Y4TaYlUoAVTXwHQA4y0Q8AMqKDLKD7sBKDATHMkK:cFjRaYlvCXw488AnA3rFMieqH4zx
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) Microsoft Corp. 1991-1998
InternalName: Bloc-notes
FileVersion: 4.10.1998
CompanyName: Microsoft Corporation
ProductName: Systxe8me d'exploitation Microsoft(R) Windows(R)
ProductVersion: 4.10.1998
FileDescription: Fichier de l'application Bloc-notes pour Windows
OriginalFilename: NOTEPAD.EXE
Translation: 0x040c 0x04b0

Win32.Towloh.1024 also known as:

LionicVirus.Win32.Towloh.n!c
CynetMalicious (score: 100)
ALYacWin32.Towloh.1024
CylanceUnsafe
ZillyaVirus.Towloh.Win32.1
AlibabaVirus:Win32/Towloh.5884dfcd
Cybereasonmalicious.0ba4cd
CyrenW32/Towloh.A
SymantecW95.Doggie.gen
APEXMalicious
AvastWin32:Towloh
KasperskyVirus.Win32.Towloh.1024
BitDefenderWin32.Towloh.1024
NANO-AntivirusVirus.Win32.Gen-Resident.ccnd
MicroWorld-eScanWin32.Towloh.1024
TencentWin32.Virus.Towloh.Sxnz
Ad-AwareWin32.Towloh.1024
SophosW32/Towloh-A
ComodoMalware@#3nq1h50flbfz7
BitDefenderThetaAI:FileInfector.EAED71DF11
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0OEJ21
McAfee-GW-EditionBehavesLike.Win32.Kudj.qt
FireEyeWin32.Towloh.1024
EmsisoftWin32.Towloh.1024 (B)
AviraW32/Towloh.1024
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitWin32.Towloh.1024
GDataWin32.Towloh.1024
McAfeeW32/Towloh
MAXmalware (ai score=89)
VBA32TScope.Malware-Cryptor.SB
TrendMicro-HouseCallTROJ_GEN.R002C0OEJ21
YandexWin32.Towloh.1024
IkarusWin32.Towloh
MaxSecureVirus.W32.Towloh.1024
FortinetW32/Towloh.1024
AVGWin32:Towloh
Paloaltogeneric.ml

How to remove Win32.Towloh.1024?

Win32.Towloh.1024 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment