Trojan

About “Win32/TrojanDownloader.Banload.NYN” infection

Malware Removal

The Win32/TrojanDownloader.Banload.NYN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Banload.NYN virus can do?

  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/TrojanDownloader.Banload.NYN?


File Info:

name: 0A16B2BB21B86D84E9B4.mlw
path: /opt/CAPEv2/storage/binaries/1c0c528e46cf7ac22cfa6b15dff12307620d6ac50a281b5f6288e520483f59aa
crc32: D1ED5E81
md5: 0a16b2bb21b86d84e9b411d7e1a55c13
sha1: 5ac0fd5c88f06c4f7f708cd71c611f42493b9249
sha256: 1c0c528e46cf7ac22cfa6b15dff12307620d6ac50a281b5f6288e520483f59aa
sha512: 57ec2444aeac45ffc8c337cae249b6b224a000f2790f73d8082d3ce73651fa15687361e7ac9639a3743947fa0bf95f56dbbd9662bce8393ef0537fba30133439
ssdeep: 6144:7kkmNa5i2wSZZsB/vUKwSxds9Vwu6yU265lFDahux7M1WvbAFicVZRQwO1DQlS:LmAw27ZmvU9ElVa4w1W4ZqlKS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BEA47D22B7E18437D2732A389C9B86A4A9367E413D35DC4A3BF42D0D6F397817865393
sha3_384: d64b31c9773c587001d4b17dad1857dc905af43cb085aefcb1ace45b19f6402722653268b6457957f5cfb1c03ee2e137
ep_bytes: 558becb9090000006a006a004975f953
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Win32/TrojanDownloader.Banload.NYN also known as:

BkavW32.AIDetectMalware
FireEyeGeneric.mg.0a16b2bb21b86d84
SkyhighBehavesLike.Win32.Worm.gm
Cylanceunsafe
ZillyaDownloader.Banload.Win32.48142
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
SymantecDownloader
Elasticmalicious (high confidence)
ESET-NOD32Win32/TrojanDownloader.Banload.NYN
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Downloader.Win32.Banload.loa
NANO-AntivirusTrojan.Win32.Banload.flwweh
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan-Downloader.Banload.Xmhl
SophosMal/Behav-130
F-SecureTrojan.TR/ATRAPS.Gen
DrWebTrojan.DownLoader.62226
Trapminemalicious.high.ml.score
IkarusTrojan-Downloader.Win32.Banload
GDataWin32.Trojan.Agent.5WCADX
JiangminTrojanDownloader.Banload.qbv
GoogleDetected
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan[Downloader]/Win32.Banload
Kingsoftmalware.kb.a.997
XcitiumTrojWare.Win32.TrojanDownloader.Banload.NYN@atco
ZoneAlarmTrojan-Downloader.Win32.Banload.loa
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!0A16B2BB21B8
VBA32BScope.TrojanPSW.Papras
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
RisingDownloader.Banload!8.15B (TFE:4:3apOOpu8C1E)
YandexTrojan.GenAsa!sfSh3KYzysQ
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaAI:Packer.315210221F
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.c88f06
DeepInstinctMALICIOUS

How to remove Win32/TrojanDownloader.Banload.NYN?

Win32/TrojanDownloader.Banload.NYN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment