Backdoor

Backdoor.MSIL.NanoBot.azcv removal guide

Malware Removal

The Backdoor.MSIL.NanoBot.azcv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.MSIL.NanoBot.azcv virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Backdoor.MSIL.NanoBot.azcv?


File Info:

crc32: BBB68AFF
md5: 8604862f0275e27732454a2dd63c1a6b
name: nass.exe
sha1: dc8a4888ac8c047bed6a56f6b372f87ffca4faac
sha256: 1185092d614d5766f19ba0a6522a0d96e24fecbba9d36595a20bf4d16054557f
sha512: 20fed6e6352e5d8111edad17229997562590e82e5639f9b65fe00f5a4c50cc0d7c3993da66fe998833869690091214df4d327b5f38e3096a7d7eae0e6dafa187
ssdeep: 12288:qnwGwaAQyw+9+c/qiYR7hugoei6iKcmZ9s8b1VOvSHVYaU9/ptW:qnwXaAQyTP0R9/tpbrs8xVOSHVYXr8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.MSIL.NanoBot.azcv also known as:

MicroWorld-eScanTrojan.GenericKD.42216096
McAfeeArtemis!8604862F0275
CylanceUnsafe
VIPREFraudTool.Win32.RogueSecurity (v)
SangforMalware
K7AntiVirusTrojan ( 0055e5911 )
BitDefenderTrojan.GenericKD.42216096
K7GWTrojan ( 0055e5911 )
Cybereasonmalicious.8ac8c0
CyrenW32/Trojan.HDZT-5881
SymantecTrojan Horse
ESET-NOD32a variant of MSIL/Kryptik.UGA
APEXMalicious
Paloaltogeneric.ml
KasperskyBackdoor.MSIL.NanoBot.azcv
AlibabaTrojan:MSIL/Kryptik.9d0bf324
Endgamemalicious (high confidence)
EmsisoftTrojan.Crypt (A)
ComodoMalware@#1abmfo6ovku1k
F-SecureTrojan.TR/Kryptik.mbafc
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
FortinetMSIL/Kryptik.UGA!tr
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.8604862f0275e277
SophosMal/Generic-S
WebrootW32.Trojan.Gen
AviraTR/AD.Nanocore.svfgq
MAXmalware (ai score=80)
ArcabitTrojan.Generic.D2842AA0
ZoneAlarmBackdoor.MSIL.NanoBot.azcv
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Malware/Win32.Generic.C1879854
ALYacTrojan.Agent.Wacatac
Ad-AwareTrojan.GenericKD.42216096
PandaTrj/CI.A
IkarusTrojan.MSIL.Crypt
eGambitUnsafe.AI_Score_99%
GDataTrojan.GenericKD.42216096
BitDefenderThetaGen:NN.ZemsilF.33558.fmW@a0h4J0mi
AVGFileRepMalware
AvastFileRepMalware
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Generic/HEUR/QVM42.3.6635.Malware.Gen

How to remove Backdoor.MSIL.NanoBot.azcv?

Backdoor.MSIL.NanoBot.azcv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment