Trojan

Trojan.Downloader.BHO.NYP malicious file

Malware Removal

The Trojan.Downloader.BHO.NYP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Downloader.BHO.NYP virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan.Downloader.BHO.NYP?


File Info:

name: 8903D1DC58E292E1CEA0.mlw
path: /opt/CAPEv2/storage/binaries/7d673e74bf1de11add560037c82a3360ec662398322c792150041d64c1588758
crc32: 1EF50DF3
md5: 8903d1dc58e292e1cea068bb5e3f3c4c
sha1: e190732d4232f1b1283a1d638c81ae60d114a9f2
sha256: 7d673e74bf1de11add560037c82a3360ec662398322c792150041d64c1588758
sha512: 7f0eb1d0ff37af3df128934a037532ba8c477e7ddc17992444280314f569fed09930b400c653906377b29793121bd78c142ce9f8297c23c98800b43913d964a4
ssdeep: 12288:aNOTOhyGDZMVwVqTqYwu7iiFQnUiHT8QM:+2aDZM/2YH7XJiHI3
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T101947E32B6D15433D1732A7C9D5BA36C9C2ABE106D28A8867BE81C4D5F393C1753B293
sha3_384: 9f6acc46699bed6be86166d58f406d37d71d133dff3452fa174c2f219e7cb4ff0c31d7002a4f0533f01d84f9dcc148fa
ep_bytes: 558bec83c4c4b8dcd34500e8f88bfaff
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: Sun Java Microsystems
FileDescription: Java(TM)模块
FileVersion: 2.0.0.0
InternalName:
LegalCopyright: Java(TM)相关模块 Java
LegalTrademarks: Java(TM)相关模块 Java
OriginalFilename: Java(TM)相关模块 Java
ProductName: Java(TM)相关模块 Java
ProductVersion: 2.0.0.0
Comments: Java(TM)相关模块 Java
Translation: 0x0804 0x03a8

Trojan.Downloader.BHO.NYP also known as:

BkavW32.Common.958B4B26
AVGWin32:Banload-HJR [Trj]
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Downloader.BHO.NYP
FireEyeTrojan.Downloader.BHO.NYP
CAT-QuickHealDownloader.Agent.16345
SkyhighBehavesLike.Win32.Worm.gh
McAfeeGenericRXAA-AA!8903D1DC58E2
ZillyaTrojan.Genome.Win32.115627
SangforDownloader.Win32.Chinflej.Vajr
K7AntiVirusTrojan ( 7000000f1 )
AlibabaTrojan:Win32/Chinflej.cbf3df0a
K7GWTrojan ( 7000000f1 )
VirITTrojan.Win32.BHO.BJYF
SymantecTrojan.Gen
ESET-NOD32a variant of Win32/Chinflej.AJ
CynetMalicious (score: 100)
AvastWin32:Banload-HJR [Trj]
ClamAVWin.Downloader.Startp-9945755-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Downloader.BHO.NYP
NANO-AntivirusTrojan.Win32.BHO.crlec
RisingTrojan.Generic@AI.92 (RDMK:JNXD/tMFSqxEbe/kCOrSEw)
EmsisoftTrojan.Downloader.BHO.NYP (B)
BaiduWin32.Trojan.Agent.ef
DrWebTrojan.Click1.58351
VIPRETrojan.Downloader.BHO.NYP
TrendMicroTROJ_STARTP.SML3
SophosMal/Generic-S
IkarusTrojan-Downloader.Win32.Agent
JiangminTrojan/Generic.jtfu
WebrootW32.Startpage.Gen
VaristW32/StartPage.AR.gen!Eldorado
Antiy-AVLTrojan/Win32.BHO
KingsoftWin32.Trojan.Generic.a
MicrosoftTrojanDownloader:Win32/Agent
XcitiumTrojWare.Win32.BHO.AJC@4beozr
ArcabitTrojan.Downloader.BHO.NYP
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Downloader.BHO.NYP
GoogleDetected
AhnLab-V3Trojan/Win32.Overtls.R22862
VBA32Trojan.BHO
ALYacTrojan.Downloader.BHO.NYP
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallTROJ_STARTP.SML3
TencentMalware.Win32.Gencirc.10b56883
YandexTrojan.Agent!gWU3duBlRe4
MAXmalware (ai score=100)
MaxSecureTrojan.Malware.3293600.susgen
FortinetW32/StartPage.XDS!tr
DeepInstinctMALICIOUS
alibabacloudTrojan[downloader]:Win/Chinflej.AJ

How to remove Trojan.Downloader.BHO.NYP?

Trojan.Downloader.BHO.NYP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment