Malware

How to remove “Win32/StartPage.NNY”?

Malware Removal

The Win32/StartPage.NNY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/StartPage.NNY virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Win32/StartPage.NNY?


File Info:

name: 0F50F602A5F714019031.mlw
path: /opt/CAPEv2/storage/binaries/08dd2939611d0bd98a8497abc02ab0943bdb920bae278649b656f600df6b0bda
crc32: FC85F020
md5: 0f50f602a5f714019031866a4bf8b262
sha1: 9ab9c81f6598665b5819ff47ced1187e2b5f1ee4
sha256: 08dd2939611d0bd98a8497abc02ab0943bdb920bae278649b656f600df6b0bda
sha512: 7aca0be26ae4499a1164f64dc30dbb3e658773493e9e1ddf13ffb76eebba3a2f465fc70f2d82e6f85e0f814b4af769e624b157501089bd363f6a921a75661af3
ssdeep: 3072:cP95fwVjSH3MZ0YQRYrgvbNPpEe3f1C/q/CM4BoQF9nCYvQd2a:cP95Eq3MqYQugpf1CCwnFa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D9247C26B5D1C0B3C943003109E59BF9B3BBFD100F72AAA33799FB0D6D749554A2B662
sha3_384: 3c35e431fa1c9fc49c1afc8fe047940c2cc3fb64a67900eb4efcdb9e032ea4172fcc2ed0d53b1fbebf70b887a793d809
ep_bytes: 558bec6aff6880174200682cb5400064
timestamp: 2009-08-25 07:26:02

Version Info:

0: [No Data]

Win32/StartPage.NNY also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Hosts2.tpzG
AVGWin32:QHost-CCB [Trj]
MicroWorld-eScanWin32.Hematite.C
CAT-QuickHealTrojan.Mauvaise.SL1
SkyhighBehavesLike.Win32.Generic.dm
McAfeeGeneric StartPage.af
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.StartPage.Win32.2975
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 000fa8d01 )
AlibabaTrojan:Win32/StartPage.3c2203f3
K7GWTrojan ( 000fa8d01 )
Cybereasonmalicious.2a5f71
VirITTrojan.Win32.StartPage.EEN
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/StartPage.NNY
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.QHost-9830071-1
KasperskyHEUR:Trojan.Win32.StartPage.gen
BitDefenderWin32.Hematite.C
NANO-AntivirusTrojan.Win32.StartPage.vskal
AvastWin32:QHost-CCB [Trj]
RisingTrojan.StartPage!1.6677 (CLASSIC)
SophosTroj/StartB-Gen
F-SecureTrojan.TR/Downloader.Gen
DrWebTrojan.StartPage.51648
VIPREWin32.Hematite.C
TrendMicroTROJ_STARTP.SMD1
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.0f50f602a5f71401
EmsisoftWin32.Hematite.C (B)
SentinelOneStatic AI – Malicious PE
JiangminRiskTool.StartPage.km
AviraTR/Downloader.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.StartPage.nny
KingsoftWin32.Troj.GuoToolbarT.di.184320
MicrosoftTrojan:Win32/Upatre
GridinsoftTrojan.Win32.Startpage.sa
XcitiumTrojWare.Win32.Startpage.~NN@1ptxrq
ArcabitWin32.Hematite.C
ZoneAlarmHEUR:Trojan.Win32.StartPage.gen
GDataWin32.Trojan.StartPage.AK
AhnLab-V3Trojan/Win.Startp.C5599929
VBA32BScope.Trojan.Hosts
ALYacWin32.Hematite.C
Cylanceunsafe
TrendMicro-HouseCallTROJ_STARTP.SMD1
TencentTrojan.Win32.Hosts2.wa
IkarusTrojan.Win32.StartPage
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.F778!tr
BitDefenderThetaGen:NN.ZexaF.36802.nuY@aeXnMfd
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan[downloader]:Win/Startpage.b79a1853

How to remove Win32/StartPage.NNY?

Win32/StartPage.NNY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment