Trojan Worm

Trojan.NWorm malicious file

Malware Removal

The Trojan.NWorm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.NWorm virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.NWorm?


File Info:

crc32: EF34BF55
md5: f74c9dcb1dabdd091826d3b71329b530
name: F74C9DCB1DABDD091826D3B71329B530.mlw
sha1: 734cc92c856939707899e7d8991e04fab2df9ce4
sha256: b1f20ef68332c87fccd4620b020bca966c5f427c9e0c71ecf1bb0740e2cfaa6c
sha512: 9f96ea1541dc42fe70e99c1164934b0c8ecd9d1a41aa05d3c5ac7600b63a9b79c2cee1d4e42d53b2e8fe12dd703a0aceeb3f8cb5acb1364520d263ccbf9a7fe5
ssdeep: 384:C71T+Rh/1xoXBhDIbWTHQ8bcKdB2cHh0liCoBI:C7sxroOWjXbbT3OACoC
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: N-W0rm.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: N-W0rm.exe

Trojan.NWorm also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.Siggen2.2981
MicroWorld-eScanGen:Variant.Bulz.164560
FireEyeGeneric.mg.f74c9dcb1dabdd09
MalwarebytesTrojan.NWorm
K7AntiVirusTrojan ( 005309d11 )
BitDefenderGen:Variant.Bulz.164560
K7GWTrojan ( 0055bea61 )
Cybereasonmalicious.c85693
BitDefenderThetaGen:NN.ZemsilF.34688.bm0@aaRRn@j
CyrenW32/MSIL_Kryptik.SC.gen!Eldorado
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Malware.Razy-9753197-0
KasperskyHEUR:Trojan.MSIL.Agent.gen
Ad-AwareGen:Variant.Bulz.164560
SophosML/PE-A
F-SecureHeuristic.HEUR/AGEN.1121251
ZillyaTrojan.Agent.Win32.1149368
TrendMicroTrojan.MSIL.KILLREVRUN.SMJM09
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1121251
MAXmalware (ai score=87)
Antiy-AVLTrojan/MSIL.Agent
MicrosoftWorm:MSIL/NWorm.GA!MTB
ArcabitTrojan.Bulz.D282D0
ZoneAlarmHEUR:Trojan.MSIL.Agent.gen
GDataGen:Variant.Bulz.164560
CynetMalicious (score: 100)
AhnLab-V3Trojan/Gen.RL_Generic.C3503601
VBA32TScope.Trojan.MSIL
ALYacGen:Variant.Bulz.164560
CylanceUnsafe
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Agent.CBW
TrendMicro-HouseCallTrojan.MSIL.KILLREVRUN.SMJM09
RisingBackdoor.Bot!1.BEA9 (CLASSIC)
IkarusTrojan.MSIL.Agent
eGambitUnsafe.AI_Score_95%
FortinetMSIL/Agent.CGA!tr
AVGWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM03.0.EC3B.Malware.Gen

How to remove Trojan.NWorm?

Trojan.NWorm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment