Categories: Backdoor

Backdoor.MSIL removal instruction

The Backdoor.MSIL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Backdoor.MSIL virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine Backdoor.MSIL?


File Info:

crc32: 74EBCBDDmd5: 0422c8104b8ab43d478bbfd4c7a80691name: ph.exesha1: 75999415069b5663fd30147b81ad12f95879e8f1sha256: ebd6e7a18412487ccec4124f22d008ac12208b6293cfeda0f5b0f9c44b04da4fsha512: 42c8e80cd8c7cf5f5d5653819baaa9fd06a3934e39efbd5ec2b35bc3b48a34dec38004acd40859e342d5f75f2bc8c8dc02836ea27d103ef6aa523f393891f243ssdeep: 6144:Nzxhld+izAKgWimggtZmAxi2kTsG0crxRzcm:Dhldfjg7XGgUNuhtype: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0LegalCopyright: Copyright xa9 2015Assembly Version: 1.0.0.0InternalName: SegyLibrary.exeFileVersion: 1.0.0.0CompanyName: LegalTrademarks: Comments: ProductName: SegyLibraryProductVersion: 1.0.0.0FileDescription: SegyLibraryOriginalFilename: SegyLibrary.exe

Backdoor.MSIL also known as:

MicroWorld-eScan Trojan.GenericKD.32699050
FireEye Generic.mg.0422c8104b8ab43d
CAT-QuickHeal Backdoor.MSIL
McAfee RDN/Generic.grp
Malwarebytes Trojan.MalPack
VIPRE Trojan.Win32.Generic!BT
AegisLab Trojan.MSIL.Agent.m!c
K7AntiVirus Trojan ( 0055b1311 )
BitDefender Trojan.GenericKD.32699050
K7GW Trojan ( 0055b1311 )
Cybereason malicious.5069b5
TrendMicro TROJ_FRS.VSNW08K19
BitDefenderTheta Gen:NN.ZemsilF.32250.sm0@aKEF1wg
F-Prot W32/Trojan.SW.gen!Eldorado
Symantec Trojan Horse
ESET-NOD32 a variant of MSIL/Kryptik.TPQ
APEX Malicious
Avast Win32:MalwareX-gen [Trj]
GData Trojan.GenericKD.32699050
Kaspersky HEUR:Backdoor.MSIL.Agent.gen
Alibaba Trojan:MSIL/AgentTesla.a29f457e
ViRobot Trojan.Win32.Z.Malpack.302592
Endgame malicious (high confidence)
Sophos Mal/Generic-S
F-Secure Trojan.TR/Kryptik.ktlnq
DrWeb Trojan.DownLoader30.36248
Invincea heuristic
McAfee-GW-Edition BehavesLike.Win32.Generic.dc
Ikarus Trojan.Inject
Cyren W32/Trojan.SW.gen!Eldorado
Jiangmin Backdoor.MSIL.ccor
Avira TR/Kryptik.ktlnq
Antiy-AVL Trojan[Backdoor]/MSIL.Agent
Microsoft Trojan:MSIL/AgentTesla.TPC!MTB
Arcabit Trojan.Generic.D1F2F2AA
AhnLab-V3 Trojan/Win32.Injector.C3552356
ZoneAlarm HEUR:Backdoor.MSIL.Agent.gen
Acronis suspicious
ALYac Trojan.GenericKD.32699050
MAX malware (ai score=88)
Cylance Unsafe
Panda Trj/GdSda.A
TrendMicro-HouseCall TROJ_FRS.VSNW08K19
SentinelOne DFI – Suspicious PE
Fortinet MSIL/Kryptik.TPQ!tr
Ad-Aware Trojan.GenericKD.32699050
AVG Win32:MalwareX-gen [Trj]
Paloalto generic.ml
CrowdStrike win/malicious_confidence_90% (W)
Qihoo-360 HEUR/QVM03.0.2611.Malware.Gen

How to remove Backdoor.MSIL?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Trojan.GenericRI.S31670896 malicious file

The Trojan.GenericRI.S31670896 is considered dangerous by lots of security experts. When this infection is active,…

12 mins ago

Generic.Malware.SF!dld!.D800E25F information

The Generic.Malware.SF!dld!.D800E25F is considered dangerous by lots of security experts. When this infection is active,…

51 mins ago

Trojan.Generic.35441245 (file analysis)

The Trojan.Generic.35441245 is considered dangerous by lots of security experts. When this infection is active,…

57 mins ago

Generic.Dialer.3F709677 removal instruction

The Generic.Dialer.3F709677 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

How to remove “Win32/Klez.H”?

The Win32/Klez.H is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Trojan.VBCrypt.MF.139 malicious file

The Trojan.VBCrypt.MF.139 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago