Trojan

What is “Trojan:MSIL/StartPage.N!bit”?

Malware Removal

The Trojan:MSIL/StartPage.N!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/StartPage.N!bit virus can do?

  • Executable code extraction
  • Creates RWX memory

How to determine Trojan:MSIL/StartPage.N!bit?


File Info:

crc32: 87759C19
md5: 8edb20bed39b4668d97e119c59be2995
name: 8EDB20BED39B4668D97E119C59BE2995.mlw
sha1: eee12e4cd9076276817bafcc5520fcefde961703
sha256: 7ac2b56c7af421d12e019f71a6c7a1021c2b2aa92430ccfde29fd5f435323956
sha512: 80c966207d575f0c50bb091a35fb3143220de9d4794f3b2fb3acc4006ae76dcc11989e5136394811411d19493540e7adf9171eace71baab6a210a16481f1c216
ssdeep: 1536:31oHMbp33lKNnyn5QfDyiXfW9uoOEBWFoHMbp33lKNnyn5QfDQ+:31oM3linLXOXBWFoM3linm+
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: GoogleUpdate
Assembly Version: 1.0.0.0
InternalName: HomePageChanger.exe
FileVersion: 1.0.0.0
CompanyName: GoogleUpdate
LegalTrademarks: GoogleUpdate
Comments: GoogleUpdate
ProductName: GoogleUpdate
ProductVersion: 1.0.0.0
FileDescription: GoogleUpdate
OriginalFilename: HomePageChanger.exe

Trojan:MSIL/StartPage.N!bit also known as:

K7AntiVirusTrojan ( 00494e751 )
DrWebTrojan.StartPage.57675
CynetMalicious (score: 85)
ALYacGen:Variant.Razy.603571
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.14089
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/dropper.ali1000076
K7GWTrojan ( 00494e751 )
Cybereasonmalicious.ed39b4
SymantecTrojan.Gen
ESET-NOD32a variant of MSIL/StartPage.AA
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Blocker.cihz
BitDefenderGen:Variant.Razy.603571
NANO-AntivirusTrojan.Win32.Blocker.cretwj
MicroWorld-eScanGen:Variant.Razy.603571
TencentWin32.Trojan.Blocker.Efvf
Ad-AwareGen:Variant.Razy.603571
SophosMal/Generic-S
ComodoMalware@#3nmte2edz0v4t
BitDefenderThetaGen:NN.ZemsilF.34608.om0@a05r00c
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_SPNR.11LB13
McAfee-GW-EditionArtemis!Trojan
FireEyeGen:Variant.Razy.603571
EmsisoftGen:Variant.Razy.603571 (B)
AviraTR/Dropper.MSIL.Gen
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:MSIL/StartPage.N!bit
ArcabitTrojan.Razy.D935B3
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmTrojan-Ransom.Win32.Blocker.cihz
GDataGen:Variant.Razy.603571
TACHYONTrojan/W32.DN-Blocker.238080
McAfeeArtemis!8EDB20BED39B
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.2535016863
PandaGeneric Malware
TrendMicro-HouseCallTROJ_SPNR.11LB13
RisingRansom.Blocker!8.12A (CLOUD)
IkarusTrojan-Ransom.Blocker
MaxSecureTrojan.Malware.6521848.susgen
FortinetW32/Blocker.CIHZ!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HgIASOgA

How to remove Trojan:MSIL/StartPage.N!bit?

Trojan:MSIL/StartPage.N!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment