Spy Trojan

TrojanSpy:MSIL/Keylogger.BW removal tips

Malware Removal

The TrojanSpy:MSIL/Keylogger.BW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:MSIL/Keylogger.BW virus can do?

  • Network activity detected but not expressed in API logs

How to determine TrojanSpy:MSIL/Keylogger.BW?


File Info:

crc32: D622B484
md5: cdd521dc8307aaa2036dfe46cd13eefa
name: CDD521DC8307AAA2036DFE46CD13EEFA.mlw
sha1: 150e2aa9b53b1833c93aa2567afd527877758d0c
sha256: 1132d9ccc698bd1fb423d57d3d4969779c9ee9dfde0258d1834a8ad21f6f63f6
sha512: 6a5aaf759a857265408514478b2faa68d65a557449f7341edc463a5cfd9f0835e46cdeb5bb4e2fdfa3f2a79ef78337790cf2d02b0cb2d445501edbbfec20f62c
ssdeep: 3072:hsdDxbCSsGIiDVbDJ7tNnCDDRvLGmrOAOkGt6+duWA/t/SHUebbxCbGgKk12qk/:UxbCoR5b9stvLGtELbMUTKZ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
Assembly Version: 1.0.0.0
InternalName: jigga.exe
FileVersion: 1.0.0.0
CompanyName: Microsoft @ 2015
LegalTrademarks: Windows
Comments: Control ACLs Program
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 1.0.0.0
FileDescription: Control ACLs Program
OriginalFilename: jigga.exe

TrojanSpy:MSIL/Keylogger.BW also known as:

LionicTrojan.Win32.Generic.mCAZ
Elasticmalicious (high confidence)
DrWebTrojan.KeyloggerNET.12
ClamAVWin.Packed.Razy-9812591-0
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.Razy.571275
MalwarebytesTrojan.Downloader
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanSpy:MSIL/Keylogger.cfca10eb
Cybereasonmalicious.c8307a
CyrenW32/MSIL_Kryptik.DRG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.AES
APEXMalicious
AvastMSIL:GenMalicious-RM [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.571275
MicroWorld-eScanGen:Variant.Razy.571275
Ad-AwareGen:Variant.Razy.571275
SophosMal/Generic-R + Troj/Kryptik-VO
BitDefenderThetaGen:NN.ZemsilF.34050.pm0@aaNGA!b
TrendMicroTSPY_KEYLOGGR.SM1
McAfee-GW-EditionGenericRXDX-LW!CDD521DC8307
FireEyeGeneric.mg.cdd521dc8307aaa2
EmsisoftGen:Variant.Razy.571275 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/ATRAPS.Gen
eGambitTrojan.Generic
MicrosoftTrojanSpy:MSIL/Keylogger.BW
GDataGen:Variant.Razy.571275
AhnLab-V3Trojan/Win32.RL_Generic.C3443638
McAfeeGenericRXDX-LW!CDD521DC8307
MAXmalware (ai score=81)
PandaTrj/GdSda.A
TrendMicro-HouseCallTSPY_KEYLOGGR.SM1
RisingSpyware.Ranger!1.BE9B (CLASSIC)
IkarusTrojan.MSIL.Spy
FortinetMSIL/Generic.AP.AE308F0!tr
AVGMSIL:GenMalicious-RM [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HgIASZAA

How to remove TrojanSpy:MSIL/Keylogger.BW?

TrojanSpy:MSIL/Keylogger.BW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment