Malware

MSIL/Agent.SNJ removal tips

Malware Removal

The MSIL/Agent.SNJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Agent.SNJ virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSIL/Agent.SNJ?


File Info:

crc32: 82DFB93D
md5: 7296a3e6ef2601cc0b04f9560e48282c
name: 7296A3E6EF2601CC0B04F9560E48282C.mlw
sha1: 44eb3ebf8da6ca8ac4c6187c3c93de0e5e066d5f
sha256: 230c9870674e947526c139f6d0280845865c24b3da6b315c6f9a60be1f8b49e2
sha512: ff7b571ac103522b08cd5dffd3393cc70a93c4987e3abef9b054b3d68264dcc7cba00ab884375264424fda22ca1d83a3741e5101a9cdfac0baa59aaeb93ccc91
ssdeep: 1536:+pEXBJFlf1tak0E6dbcFTIHIThRMnsR0UdQ2O:J9ftp0EYQDTMnw3S
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: #AssemblyCopyright
Assembly Version: 3.0.3.0
InternalName: FB.exe
FileVersion: 3.0.3.0
CompanyName: #AssemblyProduct
LegalTrademarks: #AssemblyTrademark
Comments: #AssemblyDescription
ProductName: #AssemblyProduct
ProductVersion: 3.0.3.0
FileDescription: #AssemblyProduct
OriginalFilename: FB.exe

MSIL/Agent.SNJ also known as:

K7AntiVirusTrojan ( 0052f7621 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.Samas.13
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0052f7621 )
Cybereasonmalicious.6ef260
SymantecML.Attribute.HighConfidence
ESET-NOD32MSIL/Agent.SNJ
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.Crypt.gen
BitDefenderGen:Variant.Ransom.Samas.13
MicroWorld-eScanGen:Variant.Ransom.Samas.13
Ad-AwareGen:Variant.Ransom.Samas.13
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34758.fm0@aKE47Nj
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.7296a3e6ef2601cc
EmsisoftGen:Variant.Ransom.Samas.13 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_98%
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.Ransom.Samas.13
AhnLab-V3Malware/Win32.RL_Generic.C3447085
McAfeeArtemis!7296A3E6EF26
MAXmalware (ai score=88)
TrendMicro-HouseCallTROJ_GEN.R014H09FM21
IkarusTrojan.Dropper
FortinetPossibleThreat
AVGWin32:CrypterX-gen [Trj]

How to remove MSIL/Agent.SNJ?

MSIL/Agent.SNJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment