Home Malware Programs Trojans Trojan.MSIL.Injector.NEP

Trojan.MSIL.Injector.NEP

Posted: November 26, 2014

Threat Metric

Ranking: 5,013
Threat Level: 8/10
Infected PCs: 47,064
First Seen: November 26, 2014
Last Seen: March 9, 2025
OS(es) Affected: Windows

Trojan.MSIL.Injector.NEP is detected as a trojan by several anti-malware and anti-virus programs. Trojan.MSIL.Injector.NEP is known to be distributed in a number of ways that include spam e-mail campaigns with corrupted attachments inside or when users visit malicious websites. Trojan.MSIL.Injector.NEP can cause fake security messages to pop-up on the screen in order to mislead users into thinking they need to install additional software, which in most cases leads to malware. Users may also notice that Trojan.MSIL.Injector.NEP weakened the overall performance of their system.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\AppData\Roaming\Diagx\Diagx.exe File name: Diagx.exe
Size: 34.65 MB (34656256 bytes)
MD5: 19492d5067392d2d2fe15ec161c7722a
Detection count: 2,436
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Diagx
Group: Malware file
Last Updated: September 11, 2021
%TEMP%\Win Update\Win Update.exe File name: Win Update.exe
Size: 22.91 MB (22912512 bytes)
MD5: 7f63ddfbd79cf30f7e057bade41d514a
Detection count: 115
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\Win Update
Group: Malware file
Last Updated: August 27, 2016
%APPDATA%\BioCdlgs\fdPrhlpr.exe File name: fdPrhlpr.exe
Size: 465.92 KB (465920 bytes)
MD5: 198d703ff2b28dba58367b5434232144
Detection count: 34
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\BioCdlgs
Group: Malware file
Last Updated: June 29, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%ALLUSERSPROFILE%\Injector.exe%ALLUSERSPROFILE%\Microsoft.com%APPDATA%\Maybe.exe%TEMP%\nvc1.exe%TEMP%\Win Update\Win Update.exe
Loading...