Trojan

Should I remove “Trojan-Downloader.NSIS.Generic”?

Malware Removal

The Trojan-Downloader.NSIS.Generic is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.NSIS.Generic virus can do?

  • Unconventionial language used in binary resources: Venda
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Downloader.NSIS.Generic?


File Info:

crc32: 9783AAB2
md5: 66b4e0ea22b4094286d493a84d7afad7
name: 66B4E0EA22B4094286D493A84D7AFAD7.mlw
sha1: 1b5c7eb680705d6184e8aa80a9f74e06c8a80b07
sha256: 24be8242e989b76f9f2728c57f7f050d95aaa8e9a58522a81907caa00ddd354d
sha512: 9bbfe6a91389afc659b0d6f7e713d6917ddc86cb1eb2aa48b78baace81838b0a6a3655636cc291cb24b010e201a128e44e29dc0f47d5aed7347bf8becad29945
ssdeep: 768:mMIONWhYcEHEJZAGZU9AXm7XxRJuMvmddQcvb7l94kQd/FdVlPan8J6U:3dYREHv9Um7hsdycvb75QN+ny
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: Copyright SlangEdge printer setup
FileVersion: 9.3.2.8
CompanyName: SlangEdge printer setup
LegalTrademarks: SlangEdge printer setup
Comments: SlangEdge printer setup
ProductName: SlangEdge printer setup
ProductVersion: 9.3.2.8
FileDescription: SlangEdge printer setup Ins
Translation: 0x0433 0x04e4

Trojan-Downloader.NSIS.Generic also known as:

K7AntiVirusTrojan-Downloader ( 0052f6041 )
LionicTrojan.NSIS.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader27.11640
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojanDownloader:Win32/Obfusransom.4db8caa5
K7GWTrojan-Downloader ( 0052f6041 )
Cybereasonmalicious.680705
CyrenW32/NSIS_Downldr.A.gen!Eldorado
SymantecDownloader
ESET-NOD32NSIS/TrojanDownloader.Agent.NXG
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 99)
KasperskyHEUR:Trojan-Downloader.NSIS.Generic
NANO-AntivirusTrojan.Nsis.Mlw.fgoneo
TencentNsis.Trojan-downloader.Agent.Wqdg
SophosMal/Generic-S
ComodoMalware@#nr8ui0cs9a4h
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.AdwareDotDo.qc
FireEyeGeneric.mg.66b4e0ea22b40942
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1100706
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Trojan/Win32.Agent.C2487258
McAfeeArtemis!66B4E0EA22B4
MAXmalware (ai score=100)
PandaTrj/CI.A
MaxSecureTrojan.Malware.8439643.susgen
FortinetW32/Agent.NWW!tr.dldr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Trojan-Downloader.NSIS.Generic?

Trojan-Downloader.NSIS.Generic removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment