Categories: Trojan

What is “NSIS/TrojanDownloader.Agent.NYP”?

The NSIS/TrojanDownloader.Agent.NYP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What NSIS/TrojanDownloader.Agent.NYP virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.bing.com
d2fjzjyfyofrem.cloudfront.net

How to determine NSIS/TrojanDownloader.Agent.NYP?


File Info:

crc32: BB97D0ACmd5: 15f6cc9cbae332def70e154ea6039c12name: 15F6CC9CBAE332DEF70E154EA6039C12.mlwsha1: b20167a57728dfc1ac6001256ae24621b859f792sha256: 238a907914a39774943a07c0769a7aceb1b74be8c9bb9c02e1819391124ecedcsha512: 016f9a6eccd9be5d4ce3f83b48c20fd34617db060931d9ffb118ce23d627efd653a8c059e853a6ad2366f02891305381fa2316ed37a51f703e05736d788f20aassdeep: 1536:Snw8RSijDtSA5xeZ0DbBCcqpSWuO/A4kpz8gvaJ3w7oQfOpjzH3vM+SbBrsZ1:GwDijpS4DbYcqpAWUhvaJ3w7odv16gZ1type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

NSIS/TrojanDownloader.Agent.NYP also known as:

Bkav W32.AIDetect.malware1
Lionic Trojan.Win32.Agent.4!e
Cynet Malicious (score: 100)
Cylance Unsafe
Sangfor Trojan.Win32.Inject.sb
Alibaba TrojanDownloader:Win32/Generic.5dc6db7e
Cybereason malicious.57728d
ESET-NOD32 NSIS/TrojanDownloader.Agent.NYP
APEX Malicious
Avast Win32:Malware-gen
Kaspersky UDS:Trojan.Win32.Inject.sb
Sophos Generic ML PUA (PUA)
VIPRE Trojan.Win32.Generic!BT
McAfee-GW-Edition BehavesLike.Win32.Puper.mc
FireEye Generic.mg.15f6cc9cbae332de
SentinelOne Static AI – Malicious PE
Avira TR/Patched.NSIS.Gen8
Microsoft Trojan:Win32/Wacatac.B!ml
McAfee Artemis!15F6CC9CBAE3
TrendMicro-HouseCall TROJ_GEN.R002H0CKE21
Fortinet W32/Generic.X!tr.dldr
AVG Win32:Malware-gen

How to remove NSIS/TrojanDownloader.Agent.NYP?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Barys.438451 malicious file

The Barys.438451 is considered dangerous by lots of security experts. When this infection is active,…

6 mins ago

How to remove “Trojan.Generic.35785663”?

The Trojan.Generic.35785663 is considered dangerous by lots of security experts. When this infection is active,…

6 mins ago

Virus:Win32/Memery.HNS!MTB removal tips

The Virus:Win32/Memery.HNS!MTB is considered dangerous by lots of security experts. When this infection is active,…

32 mins ago

Trojan:MSIL/DCRat.RDJ!MTB (file analysis)

The Trojan:MSIL/DCRat.RDJ!MTB is considered dangerous by lots of security experts. When this infection is active,…

32 mins ago

How to remove “Virus:Win32/Expiro.L”?

The Virus:Win32/Expiro.L is considered dangerous by lots of security experts. When this infection is active,…

58 mins ago

Trojan:MSIL/Formbook.AMBA!MTB removal instruction

The Trojan:MSIL/Formbook.AMBA!MTB is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago