Spy

About “MSIL/Spy.Keylogger.AQJ” infection

Malware Removal

The MSIL/Spy.Keylogger.AQJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Spy.Keylogger.AQJ virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine MSIL/Spy.Keylogger.AQJ?


File Info:

name: 563E678E418BF3FC3DBE.mlw
path: /opt/CAPEv2/storage/binaries/4c4e303249d2849d13cd418bef96d8343e2537ad24bcdac2fc14218151fc64fe
crc32: 4322B408
md5: 563e678e418bf3fc3dbe4cf42abd3005
sha1: f31a4fc2d411ed46a228e5b2524ea2112b18b9a0
sha256: 4c4e303249d2849d13cd418bef96d8343e2537ad24bcdac2fc14218151fc64fe
sha512: abc2231b42ca280c494b7001d79446ecf9c249e9689c2ec77ef5fb72a1eb155c13c453359d62d0752b6ff83224e382deaf996e2af74e1d081739a28261b31cd9
ssdeep: 384:T4CHp9jOqocNJZiBBtMLPtPiJ5q/Cnbb9yaVJCH6f1E:TpHp9jOqocNJZg87/A/9yaD8R
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18082E88812DEC135D67DDA7AC5A3A90132B1E983861FD51D0BD3A00B196BFC24B83D7E
sha3_384: 8aa84810aadab5ba18f90695f1714081f450be31579e0921b9fede080bf619f749d2bd2b9f87413c38c5d5ff0b18456d
ep_bytes: ff250020400000000000000000000000
timestamp: 2051-11-09 18:10:56

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: sakıncas523ewqe213
FileVersion: 1.0.0.0
InternalName: sakıncas523ewqe213.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: sakıncas523ewqe213.exe
ProductName: sakıncas523ewqe213
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/Spy.Keylogger.AQJ also known as:

LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.47602967
CylanceUnsafe
K7AntiVirusSpyware ( 004b04e31 )
BitDefenderTrojan.GenericKD.47602967
K7GWSpyware ( 004b04e31 )
Cybereasonmalicious.2d411e
ArcabitTrojan.Generic.D2D65D17
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Keylogger.AQJ
APEXMalicious
KasperskyHEUR:Trojan-Spy.MSIL.KeyLogger.gen
AlibabaTrojan:MSIL/Generic.480ccbae
NANO-AntivirusTrojan.Win32.Gen8.ewfvod
MicroWorld-eScanTrojan.GenericKD.47602967
Ad-AwareTrojan.GenericKD.47602967
EmsisoftTrojan.GenericKD.47602967 (B)
F-SecureTrojan.TR/Spy.Gen8
ZillyaTrojan.Keylogger.Win32.74682
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.563e678e418bf3fc
SophosML/PE-A
IkarusTrojan.MSIL.Spy
AviraTR/Spy.Gen8
MAXmalware (ai score=82)
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Woreflint.A!cl
ViRobotTrojan.Win32.Z.Spy.18944.S
GDataTrojan.GenericKD.47602967
McAfeeArtemis!563E678E418B
TrendMicro-HouseCallTROJ_GEN.R002H0AL821
YandexTrojanSpy.Keylogger!PZ/tmsT9uvw
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Keylogger.AQJ!tr.spy
BitDefenderThetaGen:NN.ZemsilF.34114.bm0@aKz!Gyh
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen

How to remove MSIL/Spy.Keylogger.AQJ?

MSIL/Spy.Keylogger.AQJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment