Malware

About “VirTool:MSIL/MaliciousMSILLoaderKazy.A” infection

Malware Removal

The VirTool:MSIL/MaliciousMSILLoaderKazy.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:MSIL/MaliciousMSILLoaderKazy.A virus can do?

  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

How to determine VirTool:MSIL/MaliciousMSILLoaderKazy.A?


File Info:

crc32: 2B6840B5
md5: 80aeb4e4e1849975e82c389fbcb7fd1e
name: source1.cfg
sha1: a6940b78bae7917d8751c3996078747e21fa4167
sha256: 2ae36bb0955622f5f4dbc160140333460247a371249059ded45ecd8056e93f88
sha512: 0aa6d6083d303d0a302eaf82fc08a1a83a51d5c0bffce52488c125148973ca86ba7734786ba0459603e49152c85870751ca1cc7bb243d0b677ffd0691be2ed49
ssdeep: 12288:+dS/IskDu+3Pica4Q5ZTUtsc/mDGSUzix9xtktVcVTGZ:YuIskDu+3TlQjssPGSFxwWA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

VirTool:MSIL/MaliciousMSILLoaderKazy.A also known as:

FireEyeTrojan.GenericKD.43311149
CAT-QuickHealTrojan.MSIL
McAfeeArtemis!80AEB4E4E184
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 005680f51 )
BitDefenderTrojan.GenericKD.43311149
K7GWTrojan ( 005680f51 )
BitDefenderThetaGen:NN.ZemsilF.34128.ym0@aCDJ7Wei
CyrenW32/Trojan.XVIF-2683
SymantecTrojan.Gen.2
Paloaltogeneric.ml
CynetMalicious (score: 85)
KasperskyTrojan-Spy.Win32.Stealer.sub
AlibabaTrojanSpy:Win32/Stealer.ccda64ee
AegisLabTrojan.Win32.Razy.tr7J
MicroWorld-eScanTrojan.GenericKD.43311149
TencentWin32.Trojan-spy.Stealer.Dzjy
Ad-AwareTrojan.GenericKD.43311149
SophosMal/Generic-S
TrendMicroTROJ_GEN.R057C0WF920
McAfee-GW-EditionRDN/Generic.dx
EmsisoftTrojan.GenericKD.43311149 (B)
IkarusTrojan.MSIL.Krypt
GDataTrojan.GenericKD.43311149
AviraTR/Kryptik.nsche
MAXmalware (ai score=87)
MicrosoftVirTool:MSIL/MaliciousMSILLoaderKazy.A
Endgamemalicious (high confidence)
ZoneAlarmTrojan-Spy.Win32.Stealer.sub
ALYacTrojan.GenericKD.43311149
MalwarebytesSpyware.RedLineStealer
ESET-NOD32a variant of MSIL/GenKryptik.ELQI
TrendMicro-HouseCallTROJ_GEN.R057C0WF920
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
eGambitUnsafe.AI_Score_99%
FortinetW32/Malicious_Behavior.VEX
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.Spy.03b

How to remove VirTool:MSIL/MaliciousMSILLoaderKazy.A?

VirTool:MSIL/MaliciousMSILLoaderKazy.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment