Trojan

Trojan.NSIS.GoogUpdate.juo removal tips

Malware Removal

The Trojan.NSIS.GoogUpdate.juo is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.NSIS.GoogUpdate.juo virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Performs some HTTP requests
  • Attempts to modify proxy settings

Related domains:

errors.myserverstat.com

How to determine Trojan.NSIS.GoogUpdate.juo?


File Info:

crc32: B3FFD48C
md5: dae767407cebe9468fa396d979c98d4f
name: DAE767407CEBE9468FA396D979C98D4F.mlw
sha1: 279f50a6ded6a7f478a21d63f382e6eda2f01ff6
sha256: d71507ccb6376c4e7d3159423d214d74ee9bf1999b2a00c9cf29d0b1a8d769e3
sha512: 6ccc69dcd58a35e24b59292c6913d3b33922da615ec8ab8b9b992868309962ef627c76a86ee7adfa5e151d5f564c0c7cf631f7768a2a4d98aacce55463bef1f9
ssdeep: 1536:idEiyjdqzo7oblHhjauhCEAqSp9j0+z+sacV7W9sWjcdevbq:fiwALb3GYoBh7teDq
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.NSIS.GoogUpdate.juo also known as:

K7AntiVirusAdware ( 004ba0911 )
Elasticmalicious (high confidence)
DrWebTrojan.Crossrider.27207
CynetMalicious (score: 100)
ALYacGen:Application.Heur.gqW@lunlanni
SangforTrojan.Win32.Gen.gqW@lunlanni
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 004ba0911 )
Cybereasonmalicious.07cebe
BaiduWin32.Adware.CrossRider.a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Toolbar.Crossrider.AW potentially unwanted
APEXMalicious
AvastFileRepMalware
KasperskyTrojan.NSIS.GoogUpdate.juo
BitDefenderGen:Application.Heur.gqW@lunlanni
NANO-AntivirusRiskware.Win32.AdLoad.dfmjsk
MicroWorld-eScanGen:Application.Heur.gqW@lunlanni
TencentMalware.Win32.Gencirc.10c80da8
Ad-AwareGen:Application.Heur.gqW@lunlanni
SophosGeneric ML PUA (PUA)
ComodoApplication.Win32.InstallCore.GIFI@5j0lo9
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.PUP.ch
FireEyeGeneric.mg.dae767407cebe946
EmsisoftGen:Application.Heur.gqW@lunlanni (B)
SentinelOneStatic AI – Malicious PE
JiangminAdware/Adload.ado
AviraADWARE/CrossRider.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.AD5380
KingsoftWin32.Heur.KVMH017.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.A!ml
SUPERAntiSpywareTrojan.Agent/Gen-Redosdru
GDataWin32.Adware.Crossrider.AB
Acronissuspicious
McAfeeArtemis!DAE767407CEB
MAXmalware (ai score=73)
VBA32AdWare.AdLoad
MalwarebytesPUP.Optional.CrossRider
RisingTrojan.Generic@ML.100 (RDML:5MbkrOsRh16K7CjgnEV4FQ)
YandexTrojan.GenAsa!q0L6Vrb6M24
IkarusTrojan.GoogUpdate
MaxSecureTrojan.Malware.300983.susgen
AVGFileRepMalware

How to remove Trojan.NSIS.GoogUpdate.juo?

Trojan.NSIS.GoogUpdate.juo removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment