Malware

How to remove “Win64/BazarLoader.AL”?

Malware Removal

The Win64/BazarLoader.AL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/BazarLoader.AL virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine Win64/BazarLoader.AL?


File Info:

crc32: 0077B69E
md5: a2514fac953de1e31ece31471716c852
name: A2514FAC953DE1E31ECE31471716C852.mlw
sha1: f5055217196c833ab7ef602f3b0f61802367d7b2
sha256: a00ea79b060c85b5a90fb7410c2ff5be7199100d2a16c80f1be0bf4c65b74ba9
sha512: 386e5c9c7c2b565ceeb508ff7dc66ee3c6b3bbb522542cd798dd7d3a0d52a0673525dcde858d9e44b629466fc81c58d06702d93db34a15329d5b7ba9732ffba5
ssdeep: 12288:tGVk91sDJaT1sTBfiL0GC/eshsAirokw0wM:tGVk919Zs++es1Uokw
type: PE32+ executable (console) x86-64, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2006
InternalName: FDProviderSampleDevice
FileVersion: 1, 0, 0, 1
ProductName: FDProviderSampleDevice
ProductVersion: 1, 0, 0, 1
FileDescription: FDProviderSampleDevice
OriginalFilename: FDProviderSampleDevice.exe
Translation: 0x0409 0x04b0

Win64/BazarLoader.AL also known as:

K7AntiVirusTrojan ( 0057cc791 )
CAT-QuickHealTrojan.Win64
ALYacTrojan.GenericKD.46323299
AlibabaTrojan:Win64/Ligooc.c446ac4a
K7GWTrojan ( 0057cc791 )
SymantecTrojan.Gen.2
ESET-NOD32Win64/BazarLoader.AL
AvastWin64:MalwareX-gen [Trj]
KasperskyTrojan.Win64.Ligooc.cq
BitDefenderTrojan.GenericKD.46323299
MicroWorld-eScanTrojan.GenericKD.46323299
Ad-AwareTrojan.GenericKD.46323299
SophosMal/Generic-S
ComodoMalware@#2h287bo7skwaj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win64.Generic.gc
FireEyeTrojan.GenericKD.46323299
EmsisoftTrojan.GenericKD.46323299 (B)
WebrootW32.Malware.Gen
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/CryptInject!MSR
GridinsoftTrojan.Heur!.02052023
AegisLabTrojan.Win64.Ligooc.4!c
GDataTrojan.GenericKD.46323299
McAfeeArtemis!A2514FAC953D
MalwarebytesTrojan.Downloader
PandaTrj/CI.A
RisingTrojan.Ligooc!8.118F9 (CLOUD)
YandexTrojan.Ligooc!ekhApSOtxr4
IkarusTrojan.SuspectCRC
FortinetW32/PossibleThreat
AVGWin64:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Win64/BazarLoader.AL?

Win64/BazarLoader.AL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment