Malware

What is “MSIL/Injector.AKV”?

Malware Removal

The MSIL/Injector.AKV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Injector.AKV virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine MSIL/Injector.AKV?


File Info:

name: 2389AD0DF24955E76D75.mlw
path: /opt/CAPEv2/storage/binaries/949396ad601ce07db52449bf39268568a9beafa0e4e1e9cab3006fc7065a00dd
crc32: C33208B3
md5: 2389ad0df24955e76d75dd52f103b98d
sha1: a326dec04c78a7a8bacdd1db61317cb0cb6283ee
sha256: 949396ad601ce07db52449bf39268568a9beafa0e4e1e9cab3006fc7065a00dd
sha512: e5ba6a66b434a26646492ef2d11d162f9e72f73af5b46aaefe9fca74ceef04ad0f9a43be359c34ce8dd757e08e0a2e00732097fe336a80eba8d89a23a19ac93e
ssdeep: 1536:PCjvIxSvqunI4u3jppx0jKu/rftUNakilB1PtqD8:cIcquI4cppxuTVyakirqD8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17D634C4EFA61D216DE0D057AC903A198162EE9057666F3DF25D24F630E33BECCCAE461
sha3_384: e20c9fc2c116e926e39d6ef8d7fd685414054eb6e1c82629bbd0d47ae953e8675447722f45077451e937ee0fd0b4db83
ep_bytes: ff250020400000000000000000000000
timestamp: 2013-05-27 15:25:14

Version Info:

Translation: 0x0000 0x04b0
Comments: RPX 1.3.4400.61
FileDescription: hHR3n9K4vxz0iLv8Yx3kDg5
FileVersion: 3.2.4.9
InternalName: C:Documents and SettingsAdministrateurBureauprogramme.exe
LegalCopyright: dE65WyWx65jEun
OriginalFilename: C:Documents and SettingsAdministrateurBureauprogramme.exe
ProductVersion: 2.8.9.2
Assembly Version: 2.8.9.2
CompanyName: qQpPJT5yrSz62WM05qfgINq8158q4ekvc1TlV033KA
ProductName: M0LbnvF92y839cC62w3P098EJt3Q3DKM799LA8By26b575An2E

MSIL/Injector.AKV also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Mardom.PN.24
FireEyeGeneric.mg.2389ad0df24955e7
ALYacGen:Trojan.Mardom.PN.24
CylanceUnsafe
SangforTrojan.Win32.MSIL.Gen
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:MSIL/Disfa.3101d513
BitDefenderThetaGen:NN.ZemsilF.34212.em0@aGCQgpg
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Injector.AKV
KasperskyTrojan.MSIL.Disfa.alvo
BitDefenderGen:Trojan.Mardom.PN.24
NANO-AntivirusTrojan.Win32.Disfa.brytpy
APEXMalicious
TencentMsil.Trojan.Disfa.Hqbx
Ad-AwareGen:Trojan.Mardom.PN.24
SophosMal/Generic-S
ComodoTrojWare.MSIL.Zapchast.IW@7k7mpi
DrWebTrojan.DownLoader7.48285
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.kh
EmsisoftGen:Trojan.Mardom.PN.24 (B)
IkarusTrojan.MSIL.Bladabindi
GDataGen:Trojan.Mardom.PN.24
AviraTR/Dropper.MSIL.Gen
MAXmalware (ai score=88)
Antiy-AVLTrojan/Generic.ASMalwS.22FF91
KingsoftWin32.Troj.Disfa.al.(kcloud)
MicrosoftTrojan:Win32/Comitsproc
CynetMalicious (score: 100)
McAfeeRDN/Generic.rp
VBA32Trojan.MSIL.Disfa
AvastWin32:Malware-gen
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL:tJB2WBDWF+Vw6zD8d5g4Ug)
YandexTrojan.Disfa!DS1tGc5lN2g
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Dropper.AZP!tr
AVGWin32:Malware-gen
Cybereasonmalicious.df2495
PandaGeneric Malware

How to remove MSIL/Injector.AKV?

MSIL/Injector.AKV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment