Malware

About “MSIL/Injector.URQ” infection

Malware Removal

The MSIL/Injector.URQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Injector.URQ virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSIL/Injector.URQ?


File Info:

crc32: 8D25F82E
md5: d66fabf70d0d04833c914fd71c33ef83
name: fanskwe.exe
sha1: 2947a57e156ca229ae9170b7b8f231949bb6e4b1
sha256: 582207250d81d01adf043ea6e890ab6831fe2c5c559423aef8e5a94dc1472a1f
sha512: fd0d70d0747c253391d936d12d70f4bea66bc0e19ea934b3eb153327b3c2af02c65176c4952db34d9415c011efd4cc868507260f710056a5630333e98c938bf9
ssdeep: 12288:v+XXJ/aLAl5o5qO0iXvQ7YsVTRSYZR74Ud:vY/agK5WU47YOTAk9
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2014 - 2019
Assembly Version: 0.0.0.0
InternalName: fanskwe.exe
FileVersion: 7.10.14.18
CompanyName: aZ-8A%5j$dM3t
Comments: Wy6=*2Et5g%BC?4i!8
ProductName: zM*9$2GdJ=y53X/
ProductVersion: 7.10.14.18
FileDescription: zM*9$2GdJ=y53X/
OriginalFilename: fanskwe.exe

MSIL/Injector.URQ also known as:

FireEyeGeneric.mg.d66fabf70d0d0483
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 0055e84f1 )
K7GWTrojan ( 0055e84f1 )
TrendMicroTROJ_FRS.VSNTAM20
BitDefenderThetaGen:NN.ZemsilF.34084.Xm0@aKHTpeg
APEXMalicious
GDataWin32.Trojan-Stealer.FormBook.2OGJ7V
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
AlibabaTrojan:Win32/Kryptik.ali2000016
RisingSpyware.Noon!8.E7C9 (CLOUD)
Invinceaheuristic
McAfee-GW-EditionGenericRXJM-CZ!D66FABF70D0D
IkarusTrojan.MSIL.Injector
WebrootW32.Malware.Gen
Endgamemalicious (high confidence)
ZoneAlarmHEUR:Trojan-Spy.MSIL.Noon.gen
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Trojan/Win32.MSIL.R316223
McAfeeGenericRXJM-CZ!D66FABF70D0D
MalwarebytesTrojan.PCrypt.MSIL.Generic
ESET-NOD32a variant of MSIL/Injector.URQ
TrendMicro-HouseCallTROJ_FRS.VSNTAM20
TencentWin32.Trojan.Inject.Auto
SentinelOneDFI – Malicious PE
FortinetMSIL/Injector.URK!tr
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360HEUR/QVM03.0.BCEF.Malware.Gen

How to remove MSIL/Injector.URQ?

MSIL/Injector.URQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment