Worm

Worm:Win32/Ashademi.A information

Malware Removal

The Worm:Win32/Ashademi.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Ashademi.A virus can do?

  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs

How to determine Worm:Win32/Ashademi.A?


File Info:

crc32: 473E4B78
md5: b1bcfdcaf12da39c0c546a37d1b9a235
name: B1BCFDCAF12DA39C0C546A37D1B9A235.mlw
sha1: 02c3b10354b829a1e27cb0a01720486745329c29
sha256: de899bc175fbfd22a734bb5ba534c089403962b2d35ae31d9ac6373d311cbcae
sha512: 41623c41fd4fef3a7a4c5ecaf1ebefc2a0d4f904ff8e475c00fd86df37a3855b1a90469698fdc4da428c4fd5a1e4f935a678ed9a02972fd42e939505c4704382
ssdeep: 3072:IQS2ar/EKXAUhOysAOh4PLZzEATGimFO9TkB8w08Omfnq0A:YzESAUhO/+LZztGVCTJw2mfq
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Worm:Win32/Ashademi.A also known as:

K7AntiVirusTrojan ( 0051c0b71 )
LionicTrojan.Win32.Foreign.tqBU
Elasticmalicious (high confidence)
DrWebTrojan.Fakealert.44077
CynetMalicious (score: 99)
ALYacTrojan.Ransom.TroldeshKD.12163469
CylanceUnsafe
ZillyaTrojan.Foreign.Win32.31835
SangforRansom.Win32.TroldeshKD.fr12163469
AlibabaWorm:Win32/Foreign.685f2c5b
K7GWTrojan ( 0051c0b71 )
Cybereasonmalicious.af12da
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.NOH
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Foreign.mxmq
BitDefenderTrojan.Ransom.TroldeshKD.12163469
NANO-AntivirusTrojan.Win32.RiskGen.dvwwmn
MicroWorld-eScanTrojan.Ransom.TroldeshKD.12163469
TencentMalware.Win32.Gencirc.114bd4f2
Ad-AwareTrojan.Ransom.TroldeshKD.12163469
SophosTroj/Agent-AVDU
ComodoMalware@#13403pk44ck88
BitDefenderThetaGen:NN.ZexaF.34050.kuW@a0w7Gpoi
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_SPNR.38GP14
McAfee-GW-EditionGenericRXHF-PB!B1BCFDCAF12D
FireEyeTrojan.Ransom.TroldeshKD.12163469
EmsisoftTrojan.Ransom.TroldeshKD.12163469 (B)
JiangminTrojan/Foreign.wxx
WebrootW32.Malware.Gen
AviraTR/Symmi.5057.24
eGambitUnsafe.AI_Score_96%
Antiy-AVLTrojan/Generic.ASMalwS.47DEDC
MicrosoftWorm:Win32/Ashademi.A
ZoneAlarmTrojan-Ransom.Win32.Foreign.mxmq
GDataTrojan.Ransom.TroldeshKD.12163469
TACHYONRansom/W32.Foreign.177152
AhnLab-V3Trojan/Win32.Foreign.C586478
McAfeeGenericRXHF-PB!B1BCFDCAF12D
MAXmalware (ai score=88)
VBA32Hoax.Foreign
MalwarebytesBackdoor.Bladabindi.MSIL
PandaGeneric Malware
TrendMicro-HouseCallTROJ_SPNR.38GP14
RisingTrojan.Generic@ML.93 (RDML:kZ6jTt8Wb+zX7D4JeD/iBA)
YandexTrojan.Foreign!yf1u7piFznc
IkarusTrojan-Ransom.Foreign
FortinetW32/Foreign.HHHF!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Foreign.HgIASOQA

How to remove Worm:Win32/Ashademi.A?

Worm:Win32/Ashademi.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment