Malware

MSIL/ClipBanker.QC information

Malware Removal

The MSIL/ClipBanker.QC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/ClipBanker.QC virus can do?

    How to determine MSIL/ClipBanker.QC?

    
    

    File Info:

    crc32: D6192521
    md5: e4f6cacd93701737661af2505e1f884f
    name: E4F6CACD93701737661AF2505E1F884F.mlw
    sha1: 21e29b86ab97b5377b3de64ec9c5135e28aa2a8f
    sha256: 58afa8141ed985bbbdf6705f44bf4ffb1b2d41cdd5fcb3b79d06259723b2983b
    sha512: 45a508e555dd1966648ebc6a2d8686eac5814d4ada0d92b61828205831cb4eb2593149352ef4b588b1403eb8a9946467c25565aa335e0c80cd243db8db71163f
    ssdeep: 768:jqyqy3cheZFelQ8SHQ1p56PFdGf1pdrWqjYDCWh0Su4wjQ8hKKpBTxuNo6:VFeldr1p5VNGgYnCpLjQ88KPTxuNo6
    type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

    Version Info:

    Translation: 0x0000 0x04b0
    LegalCopyright: Copyright xa9 RrofZKlGw321O_k 2019
    Assembly Version: 7.4.9.4
    InternalName: gtasa.exe
    FileVersion: 8.5.1.5
    Comments: 7icBdCllJK_eKXt
    ProductName: Free
    ProductVersion: 8.5.1.5
    FileDescription: Gc_qm9rb0OCvl9e
    OriginalFilename: gtasa.exe

    MSIL/ClipBanker.QC also known as:

    K7AntiVirusSpyware ( 00558a7d1 )
    Elasticmalicious (high confidence)
    CynetMalicious (score: 85)
    ALYacTrojan.GenericKD.43330843
    CylanceUnsafe
    ZillyaTrojan.Agent.Win32.1343970
    SangforTrojan.Win32.Save.a
    AlibabaTrojan:MSIL/Tasker.6d285656
    K7GWSpyware ( 00558a7d1 )
    Cybereasonmalicious.d93701
    SymantecML.Attribute.HighConfidence
    ESET-NOD32a variant of MSIL/ClipBanker.QC
    APEXMalicious
    AvastWin32:MalwareX-gen [Trj]
    KasperskyHEUR:Trojan.MSIL.Tasker.gen
    BitDefenderTrojan.GenericKD.43330843
    NANO-AntivirusTrojan.Win32.Tasker.hovwdv
    MicroWorld-eScanTrojan.GenericKD.43330843
    TencentMsil.Trojan.Tasker.Amly
    Ad-AwareTrojan.GenericKD.43330843
    SophosMal/Generic-S
    ComodoMalware@#udm7ljakc938
    BitDefenderThetaGen:NN.ZemsilF.34670.em0@a4wOtdg
    VIPRETrojan.Win32.Generic!BT
    McAfee-GW-EditionArtemis!Trojan
    FireEyeGeneric.mg.e4f6cacd93701737
    EmsisoftTrojan.GenericKD.43330843 (B)
    AviraHEUR/AGEN.1106071
    eGambitUnsafe.AI_Score_95%
    MicrosoftBackdoor:Win32/Bladabindi!ml
    ArcabitTrojan.Generic.D2952D1B
    GDataTrojan.GenericKD.43330843
    AhnLab-V3Malware/Win32.Generic.R293445
    McAfeeArtemis!E4F6CACD9370
    MAXmalware (ai score=89)
    VBA32CIL.HeapOverride.Heur
    PandaTrj/CI.A
    IkarusTrojan.MSIL.Spy
    FortinetMSIL/Tasker.CDB!tr
    AVGWin32:MalwareX-gen [Trj]
    Paloaltogeneric.ml
    Qihoo-360Win32/Backdoor.Tasker.HgIASOgA

    How to remove MSIL/ClipBanker.QC?

    MSIL/ClipBanker.QC removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment