Malware

How to remove “MSIL/Injector.CMQ”?

Malware Removal

The MSIL/Injector.CMQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Injector.CMQ virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/Injector.CMQ?


File Info:

crc32: C5FFA26A
md5: 583e40cdcf19e0bce3734d90468e199e
name: 583E40CDCF19E0BCE3734D90468E199E.mlw
sha1: 95ec3f32a8326257ea6c153bb8924e3d30870a8a
sha256: 9db9e4e874fabccc6926d836f7720a3da9d07294d43247f44e63587d74e7242c
sha512: e8aa28c70cbac64f2dcd87d67ed84d617a44d7be2b6aa777990d1ef392e6bbd17f8e21d994e7f59216c6005307ca7d47586502b14ab999130d9506a52574f582
ssdeep: 24576:AuheiYwSyfdFKZeAr7u+zW8QQlowJDVVDZIPxXM:Auy14+zW8uIaM
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2016
Assembly Version: 1.0.0.0
InternalName: Yeni Nesil Stub.exe
FileVersion: 1.0.0.0
ProductName: Yeni Nesil Stub
ProductVersion: 1.0.0.0
FileDescription: Yeni Nesil Stub
OriginalFilename: Yeni Nesil Stub.exe

MSIL/Injector.CMQ also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
DrWebTrojan.Inject3.14178
CynetMalicious (score: 99)
ALYacGen:Heur.MSIL.Krypt.2
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 700000121 )
Cybereasonmalicious.dcf19e
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Injector.CMQ
APEXMalicious
AvastMSIL:Injector-LM [Trj]
KasperskyHEUR:Trojan.MSIL.Generic
BitDefenderGen:Heur.MSIL.Krypt.2
MicroWorld-eScanGen:Heur.MSIL.Krypt.2
Ad-AwareGen:Heur.MSIL.Krypt.2
SophosML/PE-A + Mal/MSIL-SF
ComodoTrojWare.MSIL.Tiggre.FPG@7ggkc2
BitDefenderThetaGen:NN.ZemsilF.34688.6q3@aecwc0k
TrendMicroTROJ_GEN.R005C0DEA21
FireEyeGeneric.mg.583e40cdcf19e0bc
EmsisoftGen:Heur.MSIL.Krypt.2 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.jbvg
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.1E209F3
MicrosoftVirTool:MSIL/Injector.ED
ArcabitTrojan.MSIL.Krypt.2
GDataGen:Heur.MSIL.Krypt.2
AhnLab-V3Trojan/Win32.RL_Dynamer.C4330257
McAfeePacked-WO!583E40CDCF19
MAXmalware (ai score=80)
VBA32TScope.Trojan.MSIL
MalwarebytesBackdoor.DarkComet
TrendMicro-HouseCallTROJ_GEN.R005C0DEA21
RisingHackTool.Injector!8.1E2 (TFE:C:TSjZTWXSNYS)
YandexTrojan.Injector!G33hdDyyN3k
IkarusTrojan.MSIL.Injector
FortinetMSIL/Injector.CMQ!tr
AVGMSIL:Injector-LM [Trj]

How to remove MSIL/Injector.CMQ?

MSIL/Injector.CMQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment