Spy Trojan

Trojan.NSISX.Spy.Gen.24 (B) removal guide

Malware Removal

The Trojan.NSISX.Spy.Gen.24 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.NSISX.Spy.Gen.24 (B) virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid

How to determine Trojan.NSISX.Spy.Gen.24 (B)?


File Info:

name: 065C0B5D44BBFE135C76.mlw
path: /opt/CAPEv2/storage/binaries/28014421f15cfb77e3c524dead2ff075927e65b64b58eafdb0dc5eb540e73815
crc32: 8CBB9789
md5: 065c0b5d44bbfe135c7692e1f9384e6c
sha1: 99e9fd69fa28c47e49cbf4d518a2bac064cb0f55
sha256: 28014421f15cfb77e3c524dead2ff075927e65b64b58eafdb0dc5eb540e73815
sha512: 7c6c6ebfc389bdec4a3e26a0289c3c423add8ae384af515f72a6f91c68b1a12a93c69fc916c38dbfe649bd6c7f3014a4e3ae61da0f91e8e2ceea125b9177ad8b
ssdeep: 6144:vYa6iDcP5dr+ppH+pz+PQboWCo9zqAdHYJXhp:vYsIzqp2qQxXxtYJr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T127441228B160D0AEF5E3067119BF43A77FFAA6552ABC621B23605F5C7D32149CB0DB21
sha3_384: 40c878601de35700511dc01faff8c4eb7b961571b4ba4372e6798838098c996f35282bc4ba3a58449a6f7ed80b314489
ep_bytes: 558bec81ecf40300005356576a205f33
timestamp: 2021-09-25 21:56:47

Version Info:

CompanyName: dendrochronologist
FileDescription: immunohematological
FileVersion: 86.9.19.54
LegalCopyright: Copyright irpe
LegalTrademarks: enacted
ProductName: 86.9.19.54
Translation: 0x0409 0x04b0

Trojan.NSISX.Spy.Gen.24 (B) also known as:

MicroWorld-eScanTrojan.NSISX.Spy.Gen.24
FireEyeGeneric.mg.065c0b5d44bbfe13
ALYacTrojan.NSISX.Spy.Gen.24
SangforSuspicious.Win32.Save.ins
SymantecPacked.NSISPacker!g14
Elasticmalicious (high confidence)
APEXMalicious
Paloaltogeneric.ml
BitDefenderTrojan.NSISX.Spy.Gen.24
AvastFileRepMalware [Trj]
EmsisoftTrojan.NSISX.Spy.Gen.24 (B)
VIPRETrojan.NSISX.Spy.Gen.24
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
Trapminemalicious.moderate.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.NSISX.Spy.Gen.24
GoogleDetected
AviraHEUR/AGEN.1246991
ArcabitTrojan.NSISX.Spy.Gen.24
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
MAXmalware (ai score=83)
Cylanceunsafe
IkarusTrojan-Spy.FormBook
AVGFileRepMalware [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.NSISX.Spy.Gen.24 (B)?

Trojan.NSISX.Spy.Gen.24 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment