Malware

What is “MSIL/PSW.Discord.AP”?

Malware Removal

The MSIL/PSW.Discord.AP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/PSW.Discord.AP virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine MSIL/PSW.Discord.AP?


File Info:

crc32: BD016D47
md5: 9b3ad506fe90042cc54748d79f1bb631
name: private_nitro_gen.exe
sha1: 51d2f94ca50b36d7c4876837c5e0b5f5a0baf759
sha256: 29091fc13371b3075c7e9b0f62633b9ad0ec2448ddd7b6bf29123dd62cf5ef4d
sha512: b36670d2e96e2be2b4b7f5aba3911257713770daad8b79a66eb715dcad7cfc36c1b525aa13ed89da64795aef680ef38c3881195e381ad96b29146b137b4b0154
ssdeep: 192:I6SUaIoYFZcKMhZOdyo58+UqWe+DjfFBLy1:I6SnIoYE7kEo58+UqWzXNBL
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2019
Assembly Version: 1.0.0.0
InternalName: Assembly title
FileVersion: 1.0.0.0
CompanyName:
Title: Assembly title
LegalTrademarks:
Comments:
ProductName: Assembly product name
ProductVersion: 1.0.0.0
FileDescription: Assembly title
OriginalFilename: Assembly title

MSIL/PSW.Discord.AP also known as:

MicroWorld-eScanGen:Variant.Razy.461180
FireEyeGeneric.mg.9b3ad506fe90042c
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.Razy.461180
CylanceUnsafe
ZillyaTrojan.Agent.Win32.1070913
SangforMalware
K7AntiVirusTrojan ( 700000121 )
BitDefenderGen:Variant.Razy.461180
K7GWTrojan ( 700000121 )
Cybereasonmalicious.6fe900
Invinceaheuristic
F-ProtW32/Razy.CN.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
GDataMSIL.Trojan-Stealer.Dhaxx.A
KasperskyHEUR:Trojan-PSW.MSIL.Agent.gen
AlibabaTrojanPSW:MSIL/Discord.acc5659c
AegisLabTrojan.MSIL.Agent.i!c
RisingStealer.Discord!1.B7AA (CLOUD)
Ad-AwareGen:Variant.Razy.461180
SophosMal/Disteal-B
ComodoTrojWare.MSIL.PSW.Discord.AP@8g3b3c
F-SecureHeuristic.HEUR/AGEN.1041225
DrWebTrojan.PWS.Stealer.25724
TrendMicroTrojanSpy.MSIL.DISCHOARD.SM
McAfee-GW-EditionPWS-FCML!9B3AD506FE90
MaxSecureTrojan.Malware.121218.susgen
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Razy.461180 (B)
IkarusTrojan.MSIL.PSW
CyrenW32/Razy.CN.gen!Eldorado
JiangminTrojan.PSW.MSIL.gah
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1041225
MAXmalware (ai score=83)
Antiy-AVLTrojan[PSW]/MSIL.Agent
Endgamemalicious (high confidence)
ArcabitTrojan.Razy.D7097C
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agent.gen
MicrosoftPWS:MSIL/Discord
AhnLab-V3Trojan/Win32.Agent.R262327
Acronissuspicious
McAfeePWS-FCML!9B3AD506FE90
VBA32TScope.Trojan.MSIL
MalwarebytesTrojan.Crypt.MSIL
ESET-NOD32a variant of MSIL/PSW.Discord.AP
TrendMicro-HouseCallTrojanSpy.MSIL.DISCHOARD.SM
TencentMsil.Trojan-qqpass.Qqrob.Htvu
FortinetMSIL/Agent.RCF!tr.pws
BitDefenderThetaGen:NN.ZemsilF.34100.am0@auDkNKj
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360HEUR/QVM03.0.DA0D.Malware.Gen

How to remove MSIL/PSW.Discord.AP?

MSIL/PSW.Discord.AP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment