Backdoor

Backdoor.MSIL.Poison information

Malware Removal

The Backdoor.MSIL.Poison is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.MSIL.Poison virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial language used in binary resources: Turkish
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.MSIL.Poison?


File Info:

crc32: D4EB9B28
md5: 87c351ad2f464e730efd8af45cab63b0
name: flashokey.exe
sha1: 3a99ca9cdae091738ea9f045c995667c814547d0
sha256: 3c2562ec38023c9b1c27b66ba5a147ddb52548822118e82482915d255081ae7a
sha512: 44111b702617fdc65ffe4a0b20b83f347593a320512a115375fd591376dd09f30df7cf369c2c9bcff138b3c930342ebf35b2d546fe4b6a0a275b040a5f2167e5
ssdeep: 12288:m36hj3joGD/wwNxBckSbNkj3joGD/wwNxBckSbN:mC/wwNxBckS+/wwNxBckS
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Backdoor.MSIL.Poison also known as:

MicroWorld-eScanTrojan.GenericKD.32421985
FireEyeTrojan.GenericKD.32421985
CAT-QuickHealBackdoor.MSIL
ALYacTrojan.GenericKD.32421985
BitDefenderTrojan.GenericKD.32421985
SymantecML.Attribute.HighConfidence
GDataTrojan.GenericKD.32421985
KasperskyHEUR:Backdoor.MSIL.Poison.gen
AegisLabTrojan.MSIL.Poison.4!c
Ad-AwareTrojan.GenericKD.32421985
EmsisoftTrojan.GenericKD.32421985 (B)
ZillyaBackdoor.Poison.Win32.91014
TrendMicroTROJ_GEN.R011C0WGI19
McAfee-GW-EditionArtemis
Trapminemalicious.moderate.ml.score
CyrenW32/Trojan.FWZY-3348
MaxSecureTrojan.Malware.73717313.susgen
ArcabitTrojan.Generic.D1EEB861
ZoneAlarmHEUR:Backdoor.MSIL.Poison.gen
McAfeeArtemis!87C351AD2F46
CylanceUnsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R011C0WGI19
FortinetMSIL/Poison!tr.bdr
Qihoo-360Win32/Backdoor.3ce

How to remove Backdoor.MSIL.Poison?

Backdoor.MSIL.Poison removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment