Trojan

About “Trojan.MSIL.Snojan” infection

Malware Removal

The Trojan.MSIL.Snojan is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MSIL.Snojan virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan.MSIL.Snojan?


File Info:

crc32: A82D133F
md5: b57fe315ea23bcc5289c7ca1986a4a8c
name: p_admin.exe
sha1: 9f24b79ebce7ac587d9e538d12f9969df17dddff
sha256: 52a04802249a38c270a44b794215be67695458432ea40fdf9ce61c24780f41f5
sha512: de4044130ca8706b8875cc77ffdae7a57cd96f0a5a2ee2bcf2004afc5d48fab9b31a587a792c09271fd2b5cdd23806691d00b180017e5824b1f9d1391a7e8392
ssdeep: 98304:JUkXhRWv7z8iD6rTBXt+YM03yd/Rf9ff6kqk:HxRWvf8iur99+YM/Rf9ffbr
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright KarbZ.com xa9 2017
Assembly Version: 3.2.0.14
InternalName: P_Admin.exe
FileVersion: 3.2.0.14
CompanyName: Portable Admin
LegalTrademarks:
Comments: Remote support / administration software.
ProductName: Portable Admin
ProductVersion: 3.2.0.14
FileDescription: Portable Admin
OriginalFilename: P_Admin.exe

Trojan.MSIL.Snojan also known as:

MicroWorld-eScanTrojan.GenericKD.33365969
FireEyeGeneric.mg.b57fe315ea23bcc5
CAT-QuickHealTrojan.MSIL
ALYacTrojan.GenericKD.33365969
CylanceUnsafe
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.33365969
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.ebce7a
TrendMicroTROJ_GEN.R002C0WBQ20
BitDefenderThetaGen:NN.ZemsilF.34096.@p0@amko2e
CyrenW32/Trojan.VUJQ-5332
SymantecML.Attribute.HighConfidence
AvastWin32:Malware-gen
GDataTrojan.GenericKD.33365969
KasperskyHEUR:Trojan.MSIL.Snojan.gen
AlibabaTrojan:MSIL/Snojan.e7c69758
AegisLabTrojan.MSIL.Snojan.4!c
RisingTrojan.Snojan!8.E387 (CLOUD)
Ad-AwareTrojan.GenericKD.33365969
SophosMal/Generic-S
ZillyaTrojan.Snojan.Win32.3360
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.33365969 (B)
JiangminTrojan.MSIL.ofms
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1FD1FD1
ZoneAlarmHEUR:Trojan.MSIL.Snojan.gen
McAfeeArtemis!B57FE315EA23
MAXmalware (ai score=84)
VBA32Trojan.MSIL.Snojan
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0WBQ20
FortinetMSIL/Snojan!tr
WebrootW32.Trojan.Gen
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/Trojan.86c

How to remove Trojan.MSIL.Snojan?

Trojan.MSIL.Snojan removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment