Spy Trojan

TrojanSpy:MSIL/Smets information

Malware Removal

The TrojanSpy:MSIL/Smets is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:MSIL/Smets virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine TrojanSpy:MSIL/Smets?


File Info:

crc32: F12598CC
md5: 83c224db25ff1b7ef975be801687cb29
name: 83C224DB25FF1B7EF975BE801687CB29.mlw
sha1: 132d05990b6497d985ec6af05d0815d244b769f1
sha256: ddcb33dcc2e90b5a66a018d8d768c98479f06644f32c91c655cd146bc6f6491b
sha512: cf841aeba38372cc42c33cc1fad8cbb2749ca373638f36b285edd8ec73d9bd721f10f9351785ec4c0ff17981150ff81e896d475eedddd4ffc0f2678648382265
ssdeep: 3072:RSsSXp9t2eQ62BtJiqPb9/kpR+RqR4Tbhdg:RS9Z9t2HLkKZkWRZ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: x6b62x8a71x65e5x96fbx79d1x500bx6236x865bx8aaax6843x4f34x5fb7x555fx6b50x8ecax6a59x4e00x666e
Assembly Version: 0.0.0.0
InternalName: Protected.exe
FileVersion: 0.0.0.0
CompanyName: x91d1x723ex62c9x6a02x516cx95d5x95d5x6c5cx723ex76dfx83f2x662fx74e6x7121x53e6x5e15x6b62x92fc
LegalTrademarks: x662fx745fx76dfx62c9x65afx65e5x7dadx7565x540dx7a2ex5df4x5316x723ex5fb7x4f5cx91ccx62c9x505a
Comments: x827ex84c4x53e6x7684x55acx5fb7x7684x91ccx6216x6efex55efx76dfx725bx5df4x683cx7d22x4e9ex5229
ProductName: x5e03x7f85x99acx7279x83abx6216x723ex897fx8afex8482x6d1bx76e7x89aax70bax7248x706bx7720x99ac
ProductVersion: 0.0.0.0
FileDescription: x96f7x622ax62c9x97cbx7dadx7684x7279x65afx514bx4e9ex4e0ax96f7x9999x7f85x8607x662fx6b50x7684
OriginalFilename: Protected.exe

TrojanSpy:MSIL/Smets also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.813768
FireEyeGeneric.mg.83c224db25ff1b7e
ALYacGen:Variant.Razy.813768
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0051064b1 )
BitDefenderGen:Variant.Razy.813768
K7GWTrojan ( 0051064b1 )
Cybereasonmalicious.b25ff1
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Backdoor.MSIL.Androm.gen
NANO-AntivirusTrojan.Win32.SpyNet.ebyusw
AegisLabTrojan.Win32.Generic.4!c
RisingTrojan.Injector!8.C4 (TFE:C:GuIcUsYXm6R)
Ad-AwareGen:Variant.Razy.813768
EmsisoftGen:Variant.Razy.813768 (B)
ComodoMalware@#1vylf57niezt
F-SecureHeuristic.HEUR/AGEN.1133542
DrWebWin32.HLLW.SpyNet.233
ZillyaTrojan.Injector.Win32.468941
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
SophosMal/Generic-S
IkarusTrojan.MSIL.Injector
JiangminTrojan.Generic.arngs
AviraHEUR/AGEN.1133542
eGambitUnsafe.AI_Score_100%
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojanSpy:MSIL/Smets
ArcabitTrojan.Razy.DC6AC8
ZoneAlarmHEUR:Backdoor.MSIL.Androm.gen
GDataGen:Variant.Razy.813768
CynetMalicious (score: 85)
McAfeeGenericRXAZ-MU!83C224DB25FF
MalwarebytesMalware.AI.1605798201
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Injector.PAC
YandexTrojan.Agent!qg904pu/SuY
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Injector.OXA!tr
BitDefenderThetaGen:NN.ZemsilF.34804.im0@aaDnoJi
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.dd6

How to remove TrojanSpy:MSIL/Smets?

TrojanSpy:MSIL/Smets removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment