Trojan

MSIL/TrojanClicker.Agent.NSY (file analysis)

Malware Removal

The MSIL/TrojanClicker.Agent.NSY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanClicker.Agent.NSY virus can do?

  • Creates RWX memory
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
www.spirochetearchivist.pw
a.tomx.xyz

How to determine MSIL/TrojanClicker.Agent.NSY?


File Info:

crc32: 0896F605
md5: 850906715589a879ef52cb0e0098da69
name: 850906715589A879EF52CB0E0098DA69.mlw
sha1: 89ac104cecf07e78dc917d146a698928efd8e25d
sha256: 49750b8fa6b21cb323203c13690867eea6cd6c2eb56f6aab150e887e68cf2009
sha512: 759d34c6deeeee7ea905095b944ccea5efc6fc335e8102ede9b5b73b3fb1c9bd55dce8c43d0996e5ae2f245c1193247a9f53db4bd395b31761352c1a583f3989
ssdeep: 96:PQGr/UiuqvAPNr3HZNJjUU52N0fUzdutgu923ojSYNta1FYcHeUYsTKWa2:kL6APNr3ZzlMdzdutg42lmszYcHeUZ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 8.2.4.16
InternalName: resurrected.exe
FileVersion: 8.2.4.16
ProductVersion: 8.2.4.16
FileDescription: Resurrected
OriginalFilename: resurrected.exe

MSIL/TrojanClicker.Agent.NSY also known as:

K7AntiVirusTrojan ( 00528a331 )
LionicTrojan.MSIL.Generic.8!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacAdware.Clicker.2.Gen
CylanceUnsafe
ZillyaTrojan.Agent.Win32.875594
SangforTrojan.Win32.Save.a
AlibabaTrojanClicker:MSIL/Generic.50bd1bb8
K7GWTrojan ( 00528a331 )
Cybereasonmalicious.15589a
CyrenW32/MSIL_Troj.WD.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanClicker.Agent.NSY
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
KasperskyHEUR:Trojan-Clicker.MSIL.Generic
BitDefenderAdware.Clicker.2.Gen
NANO-AntivirusTrojan.Win32.Dotdo.expvld
MicroWorld-eScanAdware.Clicker.2.Gen
TencentMsil.Trojan.Generic.Dxmn
Ad-AwareAdware.Clicker.2.Gen
SophosMal/Generic-S
ComodoApplicUnwnt@#5bqiz15v1jg6
BitDefenderThetaGen:NN.ZemsilF.34170.am0@aa7B04i
VIPRETrojan.Win32.Clicker!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.zt
FireEyeGeneric.mg.850906715589a879
EmsisoftAdware.Clicker.2.Gen (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1110030
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.2445D84
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitAdware.Clicker.2.Gen
GDataMSIL.Trojan.Clicker.L
AhnLab-V3Trojan/Win.Generic.C4415446
McAfeeTrojan-FPAX!850906715589
MAXmalware (ai score=63)
VBA32TScope.Trojan.MSIL
MalwarebytesAdware.DotDo.Generic.TskLnk
PandaTrj/GdSda.A
YandexTrojan.CL.Agent!g4GtGfAl7v0
IkarusTrojan.MSIL.TrojanClicker
MaxSecureTrojan.Malware.121218.susgen
FortinetMSIL/Small.NBW!tr
AVGWin32:AdwareX-gen [Adw]
Paloaltogeneric.ml

How to remove MSIL/TrojanClicker.Agent.NSY?

MSIL/TrojanClicker.Agent.NSY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment