Malware

Should I remove “Generic.NSIS.DropperC.D056A575”?

Malware Removal

The Generic.NSIS.DropperC.D056A575 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.NSIS.DropperC.D056A575 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Generic.NSIS.DropperC.D056A575?


File Info:

name: 591179ED69DD4B0BB45D.mlw
path: /opt/CAPEv2/storage/binaries/9c5f80ed668b8b9a284a25c230e6eeb7de5ddeca0b241a8518d43b56238aa911
crc32: C41A8A38
md5: 591179ed69dd4b0bb45d8b800996ec54
sha1: 65e70c1176fa1f17b17b24a53530065955e674f3
sha256: 9c5f80ed668b8b9a284a25c230e6eeb7de5ddeca0b241a8518d43b56238aa911
sha512: d9caa308a79da19c0a4f98b954ced81a7c2ba04489f2b13555e6e93b73025a9002959062239b813943fa0c566dff35a0048e594450b8001fba32cd355add07f5
ssdeep: 24576:KoTd1EKi3KY4iOTWJO35B3GeGR5l5Zvo8HuMpRliPXlc4Jpr/:KvB49sYnxGNvooOX7Jp
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1764501696BEBECA6DD7B02BA49560DDDC1218D0DCD1311E3FAA7BEE5A93CD80350D140
sha3_384: 02abc1a8467bf472dd65fe9806d8e39dc086258cc52cf3c8bb0c829643847ce2ac7aa6bc7a142ace50e2da0f079f144e
ep_bytes: 81ec8401000053565733db6801800000
timestamp: 2016-12-11 21:50:45

Version Info:

0: [No Data]

Generic.NSIS.DropperC.D056A575 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.NSIS.Agent.4!c
DrWebTrojan.MulDrop7.59017
MicroWorld-eScanGeneric.NSIS.DropperC.D056A575
FireEyeGeneric.NSIS.DropperC.D056A575
McAfeeArtemis!591179ED69DD
CylanceUnsafe
SangforTrojan.Win32.Agent.gen
K7AntiVirusTrojan ( 0052618f1 )
AlibabaVirTool:Win32/CeeInject.c3833ee0
K7GWTrojan ( 0052618f1 )
Cybereasonmalicious.d69dd4
SymantecTrojan.Gen.2
ESET-NOD32NSIS/Injector.YR
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Dropper.NSIS.Agent.gen
BitDefenderGeneric.NSIS.DropperC.D056A575
NANO-AntivirusTrojan.Win32.Ric.fgafuh
AvastNSIS:CoinMiner-D [Trj]
TencentNsis.Trojan.Generic.Sunp
SophosMal/Generic-S
ComodoMalware@#qia9py269o64
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionNSIS/ObfusInjector.e
EmsisoftGeneric.NSIS.DropperC.D056A575 (B)
SentinelOneStatic AI – Suspicious PE
GDataGeneric.NSIS.DropperC.D056A575
AviraHEUR/AGEN.1116891
MAXmalware (ai score=100)
ViRobotTrojan.Win32.S.Agent.1252900
MicrosoftVirTool:Win32/CeeInject.XZ!bit
CynetMalicious (score: 99)
VBA32TrojanDropper.Agent
ALYacGeneric.NSIS.DropperC.D056A575
APEXMalicious
FortinetW32/Injector.ABF!tr
AVGNSIS:CoinMiner-D [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Generic.NSIS.DropperC.D056A575?

Generic.NSIS.DropperC.D056A575 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment