Malware

Win64/BazarLoader.AY (file analysis)

Malware Removal

The Win64/BazarLoader.AY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/BazarLoader.AY virus can do?

    How to determine Win64/BazarLoader.AY?

    
    

    File Info:

    crc32: 5D50E9E4
    md5: a4d1aef9ba64ad4300c744297795bc42
    name: A4D1AEF9BA64AD4300C744297795BC42.mlw
    sha1: be899148b1549b1cec6e2eb9db0f94e700fc0334
    sha256: 74cf2e1f4dce793dc8bc01b3d1691e102c08bb15a3c65bb5c06a48baba0e1fb5
    sha512: 07eb2837ea2b9ecbcdcebc764ee33741d6794d41b816bd7f7a95e819675d663d721a27bbf22591b53415626969dee97c616c475c20fc50d60fbc64cd1802701d
    ssdeep: 12288:9fHnu1hxBOwTdG7MDsDbQg779SweGIvdZOyjGU+G0VCspXMl3A6Gnzq9PBa8nT2:pHK3OwTd8MQDbQgHgUIv1jGUXuCs9qW
    type: PE32+ executable (DLL) (GUI) x86-64, for MS Windows

    Version Info:

    0: [No Data]

    Win64/BazarLoader.AY also known as:

    LionicTrojan.Win64.Convagent.4!c
    ALYacGen:Variant.Razy.914960
    K7GWTrojan ( 005818b61 )
    SymantecTrojan.Gen.2
    ESET-NOD32Win64/BazarLoader.AY
    AvastWin64:Trojan-gen
    CynetMalicious (score: 100)
    KasperskyVHO:Trojan.Win64.Convagent.gen
    BitDefenderTrojan.GenericKD.46880888
    MicroWorld-eScanTrojan.GenericKD.46880888
    Ad-AwareTrojan.GenericKD.46880888
    SophosMal/Generic-S
    McAfee-GW-EditionArtemis!Trojan
    FireEyeTrojan.GenericKD.46880888
    EmsisoftTrojan.GenericKD.46880888 (B)
    KingsoftWin32.Troj.Undef.(kcloud)
    MicrosoftProgram:Win32/Wacapew.C!ml
    ArcabitTrojan.Generic.D2CB5878
    GDataTrojan.GenericKD.46880888
    McAfeeArtemis!A4D1AEF9BA64
    MAXmalware (ai score=81)
    IkarusTrojan.Win64.Bazarloader
    FortinetW64/BazarLoader.AY!tr
    AVGWin64:Trojan-gen

    How to remove Win64/BazarLoader.AY?

    Win64/BazarLoader.AY removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment