Malware

Troj/MSIL-NFT malicious file

Malware Removal

The Troj/MSIL-NFT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/MSIL-NFT virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Troj/MSIL-NFT?


File Info:

crc32: 6C5008A6
md5: 6d41cc844cf15908d38212fcd0d27904
name: pov.exe
sha1: 430584e1740ac3e225f580b6a56772725191984e
sha256: 597784234106601e18b0605f7339420a94e711fc6af3f40f7a8159f303756f74
sha512: 47179c2a7702d57ad59ba4cc674a44aa4fe50cd3203a31dd6163d2476015c47a150fc2a0a9f8dcd57e774263e6e32a9cc8b78ee7f51945753d1bdecb9087237d
ssdeep: 6144:CxK10O7J5nflboFFWgkM66Lyd86/IUPpbD:CxK32FAzMS
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: JxFSdNapHXJZhBEFsynquWOChaNRBLZsvO.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: JxFSdNapHXJZhBEFsynquWOChaNRBLZsvO.exe

Troj/MSIL-NFT also known as:

MicroWorld-eScanGen:Variant.Razy.577898
FireEyeGeneric.mg.6d41cc844cf15908
CAT-QuickHealTrojanpws.Msil
McAfeeRDN/Generic PWS.y
MalwarebytesSpyware.AgentTesla
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.MSIL.Agensla.i!c
SangforMalware
K7AntiVirusSpyware ( 004bf53c1 )
BitDefenderGen:Variant.Razy.577898
K7GWSpyware ( 004bf53c1 )
Cybereasonmalicious.1740ac
BitDefenderThetaGen:NN.ZemsilF.32517.rm0@aakWdIl
F-ProtW32/Azorult.D.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32a variant of MSIL/Spy.Agent.AES
TrendMicro-HouseCallTROJ_GEN.R002C0DKR19
AvastWin32:PWSX-gen [Trj]
GDataGen:Variant.Razy.577898
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
AlibabaBackdoor:MSIL/Remcos.ac4e98d3
NANO-AntivirusTrojan.Win32.Razy.gjxzhn
RisingSpyware.AgentTesla!1.B864 (CLASSIC)
Ad-AwareGen:Variant.Razy.577898
SophosTroj/MSIL-NFT
ComodoMalware@#26rtxk8yhn5b
F-SecureTrojan.TR/Dropper.Gen
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
SentinelOneDFI – Malicious PE
APEXMalicious
CyrenW32/Azorult.D.gen!Eldorado
JiangminTrojan.PSW.MSIL.nbk
WebrootW32.Trojan.MSIL.AGensla
AviraTR/Dropper.Gen
Endgamemalicious (high confidence)
ArcabitTrojan.Razy.D8D16A
AhnLab-V3Trojan/Win32.AgentTesla.C3468286
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen
MicrosoftBackdoor:MSIL/Remcos!MTB
Acronissuspicious
ALYacGen:Variant.Razy.577898
MAXmalware (ai score=100)
CylanceUnsafe
PandaTrj/GdSda.A
IkarusTrojan.MSIL.Spy
FortinetMSIL/Spy.AES!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.PSW.374

How to remove Troj/MSIL-NFT?

Troj/MSIL-NFT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment