Worm

About “Worm.Generic.524500” infection

Malware Removal

The Worm.Generic.524500 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.Generic.524500 virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine Worm.Generic.524500?


File Info:

crc32: 19D39A3B
md5: caa85c8e77dc6c2e7265064d3921e48c
name: CAA85C8E77DC6C2E7265064D3921E48C.mlw
sha1: 7afebec822463df56308c65ba48e0372f403ddc0
sha256: 1e3a4236c7621fe5550914e85f8454ccfd9d5bf0214a7258e213c8c27f6efd55
sha512: 9af92c1a3f5a54555ad1472653af78093ab45c4c30aa98913e5495ef01a644f5a07864ca926a69854197ad8b3c4db8cfd2a85ff9990067d0c2e1cab68f914d64
ssdeep: 6144:JaKMSD4Yuaegp0yN90QE9Jc1tUaedm+vGxkjwFNC8caU:0K3D4lasy90DJBbHv5jwFU
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: Wextract
FileVersion: 8.00.7600.16385 (win7_rtm.090713-1255)
CompanyName: Microsoft Corporation
ProductName: Windowsxae Internet Explorer
ProductVersion: 8.00.7600.16385
FileDescription: Win32 Cabinet Self-Extractor
OriginalFilename: WEXTRACT.EXE .MUI
Translation: 0x0409 0x04b0

Worm.Generic.524500 also known as:

MicroWorld-eScanWorm.Generic.524500
FireEyeGeneric.mg.caa85c8e77dc6c2e
ALYacWorm.Generic.524500
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Wacatac.C
K7AntiVirusTrojan ( 0047e6681 )
BitDefenderWorm.Generic.524500
K7GWTrojan ( 0047e6681 )
SymantecTrojan.Gen
ESET-NOD32a variant of MSIL/Agent.EW
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.fyxu
AlibabaRansom:Win32/Blocker.e65f5fb3
NANO-AntivirusTrojan.Win32.Agent.dhtirm
RisingRansom.Blocker!8.12A (CLOUD)
Ad-AwareWorm.Generic.524500
TACHYONRansom/W32.Xorist.307200
EmsisoftWorm.Generic.524500 (B)
ComodoMalware@#118ki26e6y598
F-SecureTrojan.TR/Dropper.MSIL.Gen2
McAfee-GW-EditionBehavesLike.Win64.Dropper.fc
SophosMal/Generic-S
IkarusTrojan.Dropper.MSIL2
MaxSecureTrojan.Malware.105197893.susgen
AviraTR/Dropper.MSIL.Gen2
Antiy-AVLTrojan[Ransom]/Win32.Blocker
MicrosoftTrojan:Win32/Ymacco.AA1E
ArcabitWorm.Generic.D800D4
ZoneAlarmTrojan-Ransom.Win32.Blocker.fyxu
GDataWorm.Generic.524500
CynetMalicious (score: 100)
McAfeeArtemis!CAA85C8E77DC
MAXmalware (ai score=86)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Chgt.K
TencentWin32.Trojan.Blocker.Tayq
YandexTrojan.Blocker!T7vsZ2VZZbg
SentinelOneStatic AI – Malicious SFX
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Agent.EW!worm
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.813

How to remove Worm.Generic.524500?

Worm.Generic.524500 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment