Trojan

Trojan:MSIL/Wagex.SPQM!MTB removal

Malware Removal

The Trojan:MSIL/Wagex.SPQM!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Wagex.SPQM!MTB virus can do?

  • Authenticode signature is invalid

How to determine Trojan:MSIL/Wagex.SPQM!MTB?


File Info:

name: D27DB34706C5E3A1786A.mlw
path: /opt/CAPEv2/storage/binaries/5c377f79a18435aeac408c1f3160adf8a8a02f0ddc3ec9d95552a9662f178573
crc32: 63B710FB
md5: d27db34706c5e3a1786a09149d6f1d23
sha1: f6c603d6ff8b03af63328d4d31e860fddf1d468a
sha256: 5c377f79a18435aeac408c1f3160adf8a8a02f0ddc3ec9d95552a9662f178573
sha512: e6f2ef221bf4bf9ded9612cf3d71ea51c793cffe54120740911a1458cb790cf56347a3eb68529bb8eb92c639a3ce92dd54cb381a3056342b596bbba171e9e779
ssdeep: 384:VbHMVEn8xtQ76aonrVkNuF2nrLVNJaV/df1R2LjA+hNV6BaOa8e76eGDegeXYmjd:1ln8xtQ76aonrVk22nrLV+V1f231hNVb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19A921A0577D49B17D87F47B649B2266043B6F62A8852DF2D4FDA90CE2CB33004A61F5B
sha3_384: 59dda080d665712f3b7fdcc3476a340d46ee4b664aec41544ccd43ff5355097ac99b5bb4448321e81c4aaef557bd1fb1
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-11-06 10:43:41

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: WinPrinter
FileVersion: 1.0.0.0
InternalName: TenayWEBSDK.exe
LegalCopyright: Copyright © 2014
LegalTrademarks:
OriginalFilename: TenayWEBSDK.exe
ProductName: WinPrinter
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/Wagex.SPQM!MTB also known as:

LionicTrojan.Win32.Wagex.a!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.34286678
FireEyeTrojan.Generic.34286678
SkyhighRDN/Generic Downloader.x
ALYacTrojan.Generic.34286678
MalwarebytesMalware.AI.1934812880
SangforDownloader.Msil.Wagex.Vfwl
AlibabaTrojanDownloader:MSIL/Wagex.def946ca
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyHEUR:Trojan-Downloader.MSIL.Wagex.gen
BitDefenderTrojan.Generic.34286678
AvastWin32:Malware-gen
SophosMal/Generic-S
VIPRETrojan.Generic.34286678
TrendMicroTROJ_GEN.R002C0DKD23
EmsisoftTrojan.Generic.34286678 (B)
IkarusTrojan.MSIL.Wagex
GoogleDetected
AviraTR/Redcap.ydlyk
MicrosoftTrojan:MSIL/Wagex.SPQM!MTB
ArcabitTrojan.Generic.D20B2C56
ZoneAlarmHEUR:Trojan-Downloader.MSIL.Wagex.gen
GDataTrojan.Generic.34286678
VaristW32/ABRisk.UGIQ-6758
AhnLab-V3Trojan/Win.Generic.C5392047
McAfeeRDN/Generic Downloader.x
MAXmalware (ai score=89)
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DKD23
RisingDownloader.Wagex!8.15ADE (CLOUD)
MaxSecureTrojan.Malware.171226702.susgen
FortinetPossibleThreat
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Trojan:MSIL/Wagex.SPQM!MTB?

Trojan:MSIL/Wagex.SPQM!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment