Trojan

Should I remove “TrojanPSW.Nilage”?

Malware Removal

The TrojanPSW.Nilage is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanPSW.Nilage virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine TrojanPSW.Nilage?


File Info:

name: EA7302146D6DB5769F82.mlw
path: /opt/CAPEv2/storage/binaries/2ce9a3b3ce93c955f477368015b04ec91f768271b07f3df8440ba25ca5f48f20
crc32: 95C95EF2
md5: ea7302146d6db5769f82ce937278a460
sha1: b12aea830b7b3f014889ebeb7e782e35c12b1f92
sha256: 2ce9a3b3ce93c955f477368015b04ec91f768271b07f3df8440ba25ca5f48f20
sha512: bad835f7695b822551765a320e5dd21dd2b8a7ce308e2667de928b3cdd677b7d23f8b1d19df626be22960dccf5248d0f3b0b4eafe009faa3a33e39f72b18d363
ssdeep: 192:nwg61A/0LihsxqfKD6VhKQdWhiQrSOxwH4n84Sk8NZmhGQCVwkZQKWRjcjZ/2oC:Lx0ihsxqscQ2Oxb84V8NQGQyWBatC
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1CD726C57E2A2A9B1D004DEBC4D6B523CDBB736372D0408A5EEEE5CDD8F19361191C24D
sha3_384: 2164573160c65275e075925525d388f7394be247b08d6f8c4d881852d8313fa5be22e124321044ecb3063f9a8b38fc93
ep_bytes: 558bec83c4f0535657a1b0404000c600
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

TrojanPSW.Nilage also known as:

BkavW32.Common.FE18D456
LionicTrojan.Win32.Generic.lBJ1
CAT-QuickHealTrojan.IGENERICPMF.S4954725
SkyhighArtemis
McAfeeArtemis!EA7302146D6D
MalwarebytesGeneric.Malware/Suspicious
CrowdStrikewin/malicious_confidence_60% (W)
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
JiangminTrojan/PSW.Nilage.eve
GoogleDetected
VaristW32/Delf.EY.gen!Eldorado
KingsoftWin32.Troj.Unknown.a
XcitiumMalware@#37345uu4hujby
ViRobotTrojan.Win32.A.PSW-Lineage.16384.H
ZoneAlarmUDS:DangerousObject.Multi.Generic
CynetMalicious (score: 100)
VBA32TrojanPSW.Nilage
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H0CAF24
RisingTrojan.Generic@AI.97 (RDML:MPsD99cqSikk6LVcuL/1qA)
MaxSecureTrojan.Malware.4811809.susgen
FortinetW32/Nilage.JUD!tr
DeepInstinctMALICIOUS

How to remove TrojanPSW.Nilage?

TrojanPSW.Nilage removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment