Trojan

Trojan:MSIL/Fanny information

Malware Removal

The Trojan:MSIL/Fanny is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Fanny virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Trojan:MSIL/Fanny?


File Info:

name: 9F002DD2A08EA4921CC9.mlw
path: /opt/CAPEv2/storage/binaries/2c66dae3bc2611965b048c8e75c87042bba9d6ce04751c78b24974d0663d83bd
crc32: 261FF380
md5: 9f002dd2a08ea4921cc93da033fd0aef
sha1: 780ffbf52b55623f36fbd266d180f7d640509ae9
sha256: 2c66dae3bc2611965b048c8e75c87042bba9d6ce04751c78b24974d0663d83bd
sha512: e2a0ebccfdb7afa36fb779964cff347833f5c045f030a26c0eb2fce3525475892e27f86b583b6f29d7ae0f2750958200054711a1aab502e9eb4e1e7084963799
ssdeep: 96:QqYmEMnzUfIkexMUf3Ecm/5K5JHGkXzifz5G8DNsPHjCobZK:ZYtxfIBx45KTH9+zVDEW
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1A4E1D55A7BE80A1AE8AF4B780AB3131197B2FD029A33D79F4CD4016909327645629FE0
sha3_384: cd4649f454b6f74d2ab1bb86fac0cc4c74a628f91ab777c680eb4fbccc91faabb42d908709a3dd5545164720b029e777
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-12-09 08:43:56

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: d49nf-sv.dll
LegalCopyright:
OriginalFilename: d49nf-sv.dll
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Trojan:MSIL/Fanny also known as:

BkavW32.AIDetectMalware.CS
LionicWorm.MSIL.Agent.o!c
MicroWorld-eScanGen:Variant.Bulz.599033
ClamAVWin.Packed.Ursu-9757277-0
FireEyeGeneric.mg.9f002dd2a08ea492
SkyhighTrojan-FTTC!9F002DD2A08E
ALYacGen:Variant.Bulz.599033
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00569f861 )
AlibabaWorm:MSIL/Fanny.a2af0919
K7GWTrojan ( 00569f861 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Agent.UJ
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Worm.MSIL.Agent.gen
BitDefenderGen:Variant.Bulz.599033
AvastWin32:WormX-gen [Wrm]
TencentWorm.Msil.Agent.fa
EmsisoftGen:Variant.Bulz.599033 (B)
F-SecureHeuristic.HEUR/AGEN.1300930
DrWebWin32.HLLW.UsbmonNET.1
VIPREGen:Variant.Bulz.599033
TrendMicroTrojan.MSIL.LEMONDUCK.SM
SophosTroj/MSIL-PNL
SentinelOneStatic AI – Malicious PE
JiangminWorm.MSIL.ogp
GoogleDetected
AviraHEUR/AGEN.1300930
Antiy-AVLTrojan/MSIL.Agent
MicrosoftTrojan:MSIL/Fanny
ArcabitTrojan.Bulz.D923F9
ZoneAlarmHEUR:Worm.MSIL.Agent.gen
GDataMSIL.Trojan.Fanny.A
VaristW32/Trojan.FBM.gen!Eldorado
AhnLab-V3Malware/Win.Generic.R419340
McAfeeGenericRXKZ-AA!9F002DD2A08E
MAXmalware (ai score=87)
VBA32Worm.MSIL.Usbmon.Heur
MalwarebytesTrojan.MalPack.MSIL
TrendMicro-HouseCallTrojan.MSIL.LEMONDUCK.SM
RisingTrojan.DTLMiner!1.DB4F (CLASSIC)
IkarusWorm.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.UJ!worm
AVGWin32:WormX-gen [Wrm]
DeepInstinctMALICIOUS

How to remove Trojan:MSIL/Fanny?

Trojan:MSIL/Fanny removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment