Trojan

Trojan.MSIL.XMG removal instruction

Malware Removal

The Trojan.MSIL.XMG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MSIL.XMG virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Exhibits behavior characteristic of iSpy Keylogger
  • Network activity detected but not expressed in API logs

How to determine Trojan.MSIL.XMG?


File Info:

crc32: B32870CB
md5: 32fc704680b42dca2ef8e22b0586af2f
name: 32FC704680B42DCA2EF8E22B0586AF2F.mlw
sha1: 7e84a94902f00a279b6703c0a5049ad4b07b5f52
sha256: ddc65e27bcd091d7f6106d96ff34b8a30b4a045cf01de44e19dad13054c09ad9
sha512: 816763c035fe00ae11ba47cb771c8a03f2904a0b09d7d8df80d0aba32672a67622f385ca419ab621be84810d021a9a305b53f56d9fdd95c397a2c87f370f21a2
ssdeep: 12288:YbEW63kkb8PKN31XD80whZinBeQ2VxxswcId4FZxHcKU3OSk32IVOsyiBG1nus6:SEW+kmAKD4Sv2J0Id21xqOvOQoFcod5
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 1167
Assembly Version: 4.3.7.3
InternalName: SZ34444.exe
FileVersion: 1.2.2.3
CompanyName: KXDWF@
LegalTrademarks:
Comments: KXDWF@
ProductName: K
ProductVersion: 1.2.2.3
FileDescription: KXD
OriginalFilename: SZ34444.exe

Trojan.MSIL.XMG also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.MSIL.XMG
FireEyeGeneric.mg.32fc704680b42dca
ALYacTrojan.MSIL.XMG
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SUPERAntiSpywareAdware.Tuto4PC/Variant
SangforMalware
K7AntiVirusTrojan ( 0051b9181 )
AlibabaTrojan:MSIL/Kryptik.282b4a15
K7GWTrojan ( 0051b9181 )
Cybereasonmalicious.680b42
CyrenW32/S-64c97e90!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.MSIL.XMG
NANO-AntivirusTrojan.Win32.GenKryptik.eliczc
AegisLabTrojan.Win32.Generic.4!c
TencentWin32.Trojan.Generic.Llhs
Ad-AwareTrojan.MSIL.XMG
SophosMal/Kryptik-BF
ComodoTrojWare.MSIL.Injector.QTZ@6mgpxg
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.DownLoader23.28417
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
EmsisoftTrojan.MSIL.XMG (B)
Paloaltogeneric.ml
GDataTrojan.MSIL.XMG
JiangminTrojan.Generic.artzu
WebrootW32.Adware.Gen
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_100%
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Troj.Undef.(kcloud)
ArcabitTrojan.MSIL.XMG
ZoneAlarmHEUR:Trojan.Win32.Generic
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Dynamer.R195064
Acronissuspicious
McAfeeMSIL/Inject-FUE!32FC704680B4
MalwarebytesAdware.Tuto4PC
ESET-NOD32a variant of MSIL/Kryptik.IIS
RisingDropper.Generic!8.35E (CLOUD)
YandexTrojan.Agent!Q1cuJoCSKjM
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Injector.QTZ!tr
BitDefenderThetaGen:NN.ZemsilF.34804.Zm0@amAueRm
AVGWin32:Malware-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.MSIL.XMG?

Trojan.MSIL.XMG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment