Trojan

Trojan.Downloader.NSIS removal guide

Malware Removal

The Trojan.Downloader.NSIS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Downloader.NSIS virus can do?

  • Reads data out of its own binary image
  • Anomalous binary characteristics

Related domains:

malta.pushmonkey.life
finland.carbaseball.club
usa.theorybasketball.online

How to determine Trojan.Downloader.NSIS?


File Info:

crc32: CDCD9A60
md5: 926446a4c7f380538c1ebc7268ec7ff3
name: 926446A4C7F380538C1EBC7268EC7FF3.mlw
sha1: e2a0be313af688abcd2ec1b55cf023045169b72a
sha256: 1dc886decfdf13fae6360c110c9c9c11a7d78398f82fd8e891915407a7c6eaa3
sha512: fda09d3627ec80e39bdac6aa509396aa493a0289c8f6b95bd79aa38bb8116811fd628fd596d7dda8e8aa59ea2d556ee01fe161ca659a3c79c1a4eab10936ecd1
ssdeep: 6144:0e34dvAgYB4L/OkX1EylEBVrI7PF/zJJgUIxfd5tDpBSup:qYguGJl1R/Lgfx33
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: run_ccba8
InternalName: run_ccba8
FileVersion: 1.0.0.0
CompanyName: run_ccba8
LegalTrademarks: run_ccba8
ProductName: run_ccba8
ProductVersion: 1.0.0.0
FileDescription: run_ccba8
OriginalFilename: setup.exe
Translation: 0x0000 0x04e4

Trojan.Downloader.NSIS also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Adload.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader27.9011
ClamAVWin.Malware.Agen-9781592-0
ALYacGen:Variant.Application.Adload.54
CylanceUnsafe
ZillyaDownloader.Adload.Win32.66456
AlibabaAdWare:Win32/AdLoad.d888ea82
K7GWTrojan ( 0053f0d11 )
K7AntiVirusTrojan ( 0053f0d11 )
CyrenW32/Adload.EI.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32NSIS/TrojanDownloader.Adload.CS
APEXMalicious
AvastNSIS:Adware-ACZ [Adw]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Downloader.NSIS.Adload.gen
BitDefenderGen:Variant.Application.Adload.54
NANO-AntivirusTrojan.Nsis.Adload.fiurum
MicroWorld-eScanGen:Variant.Application.Adload.54
TencentNsis.Trojan-downloader.Adload.Hrom
SophosMal/Generic-R
ComodoMalware@#1yqod902djyl0
McAfee-GW-EditionBehavesLike.Win32.TrojanAdload.dc
FireEyeGeneric.mg.926446a4c7f38053
EmsisoftGen:Variant.Application.Adload.54 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1127438
Antiy-AVLTrojan/Generic.ASMalwRG.F6
MicrosoftTrojan:Win32/Occamy.C
SUPERAntiSpywareHack.Tool/Gen-Crack
GDataWin32.Trojan-Downloader.Adload.AG
AhnLab-V3PUP/Win32.AdLoad.R243899
McAfeeArtemis!926446A4C7F3
MAXmalware (ai score=99)
VBA32suspected of Trojan.Downloader.gen
MalwarebytesTrojan.Downloader.NSIS
PandaTrj/CI.A
RisingDownloader.Adload/NSIS!1.B481 (CLASSIC)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Adload.A0B3!tr.dldr
AVGNSIS:Adware-ACZ [Adw]
Paloaltogeneric.ml

How to remove Trojan.Downloader.NSIS?

Trojan.Downloader.NSIS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment