Trojan

How to remove “TrojanDownloader.NSIS.Hicrazy”?

Malware Removal

The TrojanDownloader.NSIS.Hicrazy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader.NSIS.Hicrazy virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine TrojanDownloader.NSIS.Hicrazy?


File Info:

name: 259748621135651EA4F2.mlw
path: /opt/CAPEv2/storage/binaries/0eadcb24e39c9c72db038484651dcc6c48a2c7d8ebfa1f875f159f42dce02e4f
crc32: C14B5824
md5: 259748621135651ea4f2213f126a6880
sha1: 9f173ae17d8179c015dd76c8519b951fc84f8905
sha256: 0eadcb24e39c9c72db038484651dcc6c48a2c7d8ebfa1f875f159f42dce02e4f
sha512: 40ce166b46e4b0cdc845cba039efc8de00b8e9345f1ad315d725e80acca66ef72d0c6e2e74a424054c32635ca925de8e93a443f5dfc72f3ff29f8f230f063de6
ssdeep: 3072:ugXdZt9P6D3XJM6B1gAvmYb+VlytHaLqIcHtj8:ue34y6Zvdb+VUxaLbQQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BDA3E04A75D08977F59E457025BAF32DC7BBDE840294097B9B383F7C2D726828D0821E
sha3_384: 1f2c63c36eac80622a584536b22eb1eedbc17c1f5a7f14c9cbaf07e43a3840ad9a17f521bb898b80b2fdc19cb74d6ec1
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-06-06 21:41:59

Version Info:

Comments: http://yu.zjcg.org
CompanyName: MeinV
FileDescription: Installer Application
FileVersion: 1.0.0.0
LegalCopyright: Corporation. All rights reserved.
ProductName: Â̶¹ä¯ÀÀÆ÷
ProductVersion: 1.0.0.0
Translation: 0x0000 0x04e4

TrojanDownloader.NSIS.Hicrazy also known as:

BkavW32.AIDetectMalware
DrWebAdware.Downware.2469
MicroWorld-eScanTrojan.Downloader.Hicrazyk.A
ClamAVWin.Trojan.Hicrazyk-12
FireEyeTrojan.Downloader.Hicrazyk.A
CAT-QuickHealTrojanDownloader.NSIS.Hicrazy
SkyhighGenDownloader.vz
ALYacTrojan.Downloader.Hicrazyk.A
SangforTrojan.Win32.Downloader.A
K7AntiVirusTrojan-Downloader ( 0055e3ed1 )
AlibabaTrojanDownloader:Win32/Hicrazyk.37bc4caa
K7GWTrojan-Downloader ( 0055e3ed1 )
SymantecTrojan.ADH
Elasticmalicious (high confidence)
ESET-NOD32NSIS/TrojanDownloader.Grinidou.F
APEXMalicious
KasperskyHEUR:Trojan-Downloader.NSIS.Chindo.gen
BitDefenderTrojan.Downloader.Hicrazyk.A
NANO-AntivirusRiskware.Nsis.Dwn.cwhxun
AvastNSIS:DropperX-gen [Drp]
RisingTrojan.Generic@AI.100 (RDML:7XTahwm+qBkTIHhQwGuYCg)
EmsisoftTrojan.Downloader.Hicrazyk.A (B)
BaiduNSIS.Trojan-Downloader.Grinidou.a
VIPRETrojan.Downloader.Hicrazyk.A
SophosTroj/StartP-HV
IkarusTrojan.NSIS.StartPage
GDataTrojan.Downloader.Hicrazyk.A
WebrootW32.Trojan.Gen
GoogleDetected
Antiy-AVLGrayWare[Downloader]/Win32.Adload.gen
Kingsoftmalware.kb.a.956
XcitiumMalware@#3gedfceyh05ru
ArcabitTrojan.Downloader.Hicrazyk.A
ZoneAlarmHEUR:Trojan-Downloader.NSIS.Chindo.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
VaristW32/S-d89d64b6!Eldorado
AhnLab-V3Downloader/Win32.NSIS.R104195
VBA32TrojanDownloader.Chindo
Cylanceunsafe
PandaTrj/CI.A
TencentNsis.Trojan-Downloader.Ader.Ddhl
FortinetW32/StartPage.NY!tr
AVGNSIS:DropperX-gen [Drp]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (D)

How to remove TrojanDownloader.NSIS.Hicrazy?

TrojanDownloader.NSIS.Hicrazy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment