Spy Trojan

Trojan:MSIL/Spy.Keylogger.EDN!MTB information

Malware Removal

The Trojan:MSIL/Spy.Keylogger.EDN!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Spy.Keylogger.EDN!MTB virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Trojan:MSIL/Spy.Keylogger.EDN!MTB?


File Info:

name: 2DE6B761B98E29C1FAA4.mlw
path: /opt/CAPEv2/storage/binaries/40756a03637796530570ba2ab55361e0b8d1c4741fab30790718a44cf196d0ae
crc32: A4400474
md5: 2de6b761b98e29c1faa4900e3c17fb9c
sha1: 5f878070fe2b7fd4bc6b8062eafbf24acdf3117d
sha256: 40756a03637796530570ba2ab55361e0b8d1c4741fab30790718a44cf196d0ae
sha512: 26be97d8b8e49af29ef0cefdd46335b4cbcf65ee68314dc8dc79860ec57ebb62e2dfb7b3fa11d59ab88bb007c11060940aa81d51b2399eabf633526839e91149
ssdeep: 192:Ca+OIuj5OGPNTEAg3oT5qnrDy4azgoJIy+8AuMqCauxD1:9LZEAg385CPSgsIB8pMRb1
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D602289667D8CE36C4BA07329C3B13500776F6564D6BE7EF298D821A2E133250F937A1
sha3_384: db17449f51245e34d93cb5d4609b242b0c1d6b052157539947fa75964511c667ceb64571bd0c0a073124fffb049dac9f
ep_bytes: ff250020400000000000000000000000
timestamp: 2017-02-13 05:21:27

Version Info:

Translation: 0x0000 0x04b0
FileDescription: ConsoleApplication1
FileVersion: 1.0.0.0
InternalName: ConsoleApplication1.exe
LegalCopyright: Copyright © 2014
OriginalFilename: ConsoleApplication1.exe
ProductName: ConsoleApplication1
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/Spy.Keylogger.EDN!MTB also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Multi.Generic.4!c
AVGWin32:Malware-gen
MicroWorld-eScanTrojan.GenericKD.4481395
SkyhighArtemis
McAfeeArtemis!2DE6B761B98E
MalwarebytesGeneric.Malware/Suspicious
VIPRETrojan.GenericKD.4481395
SangforTrojan.Win32.GenericKD.4
K7AntiVirusSpyware ( 004b9e101 )
AlibabaTrojan:MSIL/Generic.1e19a9ce
K7GWSpyware ( 004b9e101 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZemsilF.36802.am0@a49wCol
VirITTrojan.Win32.MSIL_Heur.B
SymantecTrojan.Gen.2
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of MSIL/Spy.Keylogger.DDC
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.GenericKD.4481395
NANO-AntivirusTrojan.Win32.Agent.elvtht
AvastWin32:Malware-gen
EmsisoftTrojan.GenericKD.4481395 (B)
F-SecureHeuristic.HEUR/AGEN.1313619
ZillyaTrojan.Agent.Win32.765231
FireEyeGeneric.mg.2de6b761b98e29c1
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1313619
MAXmalware (ai score=94)
Kingsoftmalware.kb.c.995
MicrosoftTrojan:MSIL/Spy.Keylogger.EDN!MTB
XcitiumMalware@#16w6k6s3dnmx3
ArcabitTrojan.Generic.D446173
GDataTrojan.GenericKD.4481395
GoogleDetected
VBA32Trojan.MSIL.gen.04
ALYacTrojan.GenericKD.4481395
Cylanceunsafe
PandaTrj/GdSda.A
RisingSpyware.KeyLogger!8.12F (CLOUD)
IkarusTrojan.MSIL.Spy
MaxSecureTrojan.Malware.1728101.susgen
FortinetW32/PWS.Y!tr
Cybereasonmalicious.1b98e2
DeepInstinctMALICIOUS

How to remove Trojan:MSIL/Spy.Keylogger.EDN!MTB?

Trojan:MSIL/Spy.Keylogger.EDN!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment