Malware

ML/PE-A + Troj/MSIL-QGC information

Malware Removal

The ML/PE-A + Troj/MSIL-QGC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + Troj/MSIL-QGC virus can do?

  • Network activity detected but not expressed in API logs

How to determine ML/PE-A + Troj/MSIL-QGC?


File Info:

crc32: 2C77330A
md5: 38f8a7e385599f9dad96d3201e0e9d9e
name: 38F8A7E385599F9DAD96D3201E0E9D9E.mlw
sha1: 9203f3ce4965066dee2b035279f215184aaf6d3b
sha256: cf69b63b9cb0ecae224f272bbf7d02fefa14e31ea1e2dab90d2f7fad8b742edb
sha512: 05528a7790cc6ac106c05533edd056b9bffec99b74e40a2fad8be08b5634666693dd001513214ec8a7bed092bdcb39780ba37453460e6f61795ae5a7ccfead6e
ssdeep: 768:mugPNTjgkH7F7WUHw9pmo2q7CjCm2qSPIwLb9fnZlr0bzSf938GEwc9BW11jaBD:mugPNTcI42lr7wL5fZ6bzS38Vwc9BW1
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.0.0
InternalName: Stub.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename: Stub.exe

ML/PE-A + Troj/MSIL-QGC also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen9.56514
MicroWorld-eScanGen:Variant.Razy.576379
McAfeeFareit-FZT!38F8A7E38559
CylanceUnsafe
AegisLabTrojan.MSIL.Crysan.m!c
SangforMalware
K7AntiVirusTrojan ( 005678321 )
BitDefenderGen:Variant.Razy.576379
K7GWTrojan ( 005678321 )
Cybereasonmalicious.385599
ArcabitTrojan.Razy.D8CB7B
BitDefenderThetaGen:NN.ZemsilF.34658.cm0@a0iKI1i
CyrenW32/MSIL_Troj.UP.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.CFQ
TrendMicro-HouseCallTROJ_GEN.R06CC0DKQ20
Paloaltogeneric.ml
ClamAVWin.Packed.Samas-7998113-0
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
AlibabaBackdoor:MSIL/Crysan.4fe50ec4
TencentMsil.Backdoor.Crysan.Lnoq
Ad-AwareGen:Variant.Razy.576379
EmsisoftGen:Variant.Razy.576379 (B)
ComodoMalware@#1t4gpemxnze1i
F-SecureTrojan.TR/Dropper.Gen
ZillyaBackdoor.Crysan.Win32.420
TrendMicroTROJ_GEN.R06CC0DKQ20
McAfee-GW-EditionFareit-FZT!38F8A7E38559
SentinelOneStatic AI – Malicious PE
FireEyeGeneric.mg.38f8a7e385599f9d
SophosML/PE-A + Troj/MSIL-QGC
IkarusTrojan.MSIL.Agent
JiangminBackdoor.MSIL.cxnh
AviraTR/Dropper.Gen
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:MSIL/Ursu.KP
ZoneAlarmHEUR:Backdoor.MSIL.Crysan.gen
GDataGen:Variant.Razy.576379
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.C3558490
ALYacBackdoor.RAT.Async
MAXmalware (ai score=86)
MalwarebytesBackdoor.AsyncRAT.MSIL.Generic
PandaTrj/GdSda.A
APEXMalicious
RisingTrojan.AntiVM!1.CF63 (CLASSIC)
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Agent.CFQ!tr
AVGWin32:DropperX-gen [Drp]
AvastWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Generic/Backdoor.c00

How to remove ML/PE-A + Troj/MSIL-QGC?

ML/PE-A + Troj/MSIL-QGC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment