Spy Trojan

Should I remove “Trojan:MSIL/SpyNoon.SMD!MTB”?

Malware Removal

The Trojan:MSIL/SpyNoon.SMD!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/SpyNoon.SMD!MTB virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Trojan:MSIL/SpyNoon.SMD!MTB?


File Info:

name: 92D02811B6B1E9EB265A.mlw
path: /opt/CAPEv2/storage/binaries/9a99c00c276ec7a7f8782f37d125643969c44eff54e0e6461661094ed4200ae1
crc32: 433ED418
md5: 92d02811b6b1e9eb265acc52ac273a5c
sha1: 04930d5cf3d1ed1ad22d69259174d475fbf6f84e
sha256: 9a99c00c276ec7a7f8782f37d125643969c44eff54e0e6461661094ed4200ae1
sha512: 999c2228bca856d5719e6b77ffb91c9c0fc3a869f06ad93395a8af4a6acf0f4dc935be562a94ab5a24b5bbf135d1c89d76f21223da255ee7be4ba5257935137d
ssdeep: 12288:b2iNxP47B7P47BjEPK3SHAjR/xYMyOkkDm7PqxxIBccBfdFDogb:b17P47B7P47B/3jVKMIkCcIB5B1FDo
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10E65BD2536B1AE9CD12E4BFB44F4817406B6AC06AE2ED79F76F13E2E7D312811116363
sha3_384: d9b1769274637e2746fe0f7dc7cbeeb88809189cbbd086162c35bd1c6f939bc1ad97848977287a9450c0822b8975f270
ep_bytes: ff250020400000000000000000000000
timestamp: 2002-07-29 10:07:16

Version Info:

CompanyName: Adobe Inc
FileDescription: Adobe Download Manager
FileVersion: 2.0.0.604s
InternalName: Adobe Download Manager
LegalCopyright: Copyright 2019 Adobe Inc. All rights reserved.
OriginalFilename: Adobe Download Manager
ProductName: Adobe Download Manager
ProductVersion: 2.0.0.604s
Translation: 0x0409 0x04b0

Trojan:MSIL/SpyNoon.SMD!MTB also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.57956
MicroWorld-eScanTrojan.GenericKD.38138298
FireEyeGeneric.mg.92d02811b6b1e9eb
ALYacTrojan.GenericKD.38138298
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3632852
K7AntiVirusTrojan ( 0058b16a1 )
AlibabaTrojanSpy:MSIL/SpyNoon.5995c0f6
K7GWTrojan ( 0058b16a1 )
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaGen:NN.ZemsilCO.34084.Bn0@ayLFVRpi
CyrenW32/MSIL_Agent.CFH.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ADOU
TrendMicro-HouseCallTROJ_GEN.R011C0WL221
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
BitDefenderTrojan.GenericKD.38138298
AvastWin32:MalwareX-gen [Trj]
Ad-AwareTrojan.GenericKD.38138298
TrendMicroTROJ_GEN.R011C0WL221
McAfee-GW-EditionGenericRXQX-MV!92D02811B6B1
EmsisoftTrojan.GenericKD.38138298 (B)
IkarusTrojan.MSIL.Crypt
AviraTR/Kryptik.vvzkt
Antiy-AVLTrojan/Generic.ASMalwS.34E29E4
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:MSIL/SpyNoon.SMD!MTB
GDataTrojan.GenericKD.38138298
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.C4799347
McAfeeGenericRXQX-MV!92D02811B6B1
MAXmalware (ai score=82)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.663328316
APEXMalicious
YandexTrojan.Kryptik!CAVcqB8ZwAM
SentinelOneStatic AI – Malicious PE
FortinetPossibleThreat.ZDS
AVGWin32:MalwareX-gen [Trj]
PandaTrj/GdSda.A

How to remove Trojan:MSIL/SpyNoon.SMD!MTB?

Trojan:MSIL/SpyNoon.SMD!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment