Backdoor

Backdoor.AsyncRAT.MSIL.Generic information

Malware Removal

The Backdoor.AsyncRAT.MSIL.Generic is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.AsyncRAT.MSIL.Generic virus can do?

  • Network activity detected but not expressed in API logs

How to determine Backdoor.AsyncRAT.MSIL.Generic?


File Info:

crc32: 0CD937E5
md5: e1ea170a8026acc1c962a01c136737a2
name: wotnigger.exe
sha1: d2868d1c613bbfc5f0c2f963af3ae6fbadf16114
sha256: 4bb8ee5ba97c7830cf1817b64d68ded718dccacce1f8dbeb8cf2f40424f06e19
sha512: 94fc8cacbbbbdf5618598a723acaec1e470f022ad37ca2eb97e56ee8d5494cd08921c1e294188daa0c8280554ae3c352c8020132d96b3ff433e28e52b69930ad
ssdeep: 6144:Xue+j+lGlbnavzR5w0fhuzL/2aNNRcDyKYwZ69KW3:XNlGxOlpwCecDybwZ69KO
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: tenerhack.men
Assembly Version: 1.9.0.3
InternalName: WOTNIGGER
FileVersion: 1.9.0.3
CompanyName: tenerhack, inc.
LegalTrademarks:
Comments:
ProductName: WOTNIGGER
ProductVersion: 1.9.0.3
FileDescription: A legit WOT modpack (BY WARGAMING.NET)
OriginalFilename: WOTNIGGER

Backdoor.AsyncRAT.MSIL.Generic also known as:

MicroWorld-eScanGen:Variant.Razy.567217
FireEyeGeneric.mg.e1ea170a8026acc1
McAfeeGenericRXKP-GK!E1EA170A8026
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 005678321 )
BitDefenderGen:Variant.Razy.567217
K7GWTrojan ( 005678321 )
Cybereasonmalicious.c613bb
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:DropperX-gen [Drp]
GDataGen:Variant.Razy.567217
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
AlibabaBackdoor:MSIL/Crysan.3230c393
AegisLabTrojan.MSIL.Crysan.m!c
RisingBackdoor.AsyncRAT!1.C678 (CLOUD)
Ad-AwareGen:Variant.Razy.567217
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1121262
DrWebBackDoor.SiggenNET.5
TrendMicroTROJ_GEN.R002C0PER20
McAfee-GW-EditionGenericRXKP-GK!E1EA170A8026
EmsisoftGen:Variant.Razy.567217 (B)
IkarusTrojan.MSIL.Agent
JiangminBackdoor.MSIL.cxnh
AviraHEUR/AGEN.1121262
MAXmalware (ai score=84)
Endgamemalicious (high confidence)
ArcabitTrojan.Razy.D8A7B1
ZoneAlarmHEUR:Backdoor.MSIL.Crysan.gen
MicrosoftTrojan:Win32/Ditertag.A
AhnLab-V3Trojan/Win32.RL_Generic.C3546893
ALYacGen:Variant.Razy.567217
MalwarebytesBackdoor.AsyncRAT.MSIL.Generic
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Agent.CFQ
TrendMicro-HouseCallTROJ_GEN.R002C0PER20
SentinelOneDFI – Malicious PE
FortinetMSIL/Agent.CFQ!tr
BitDefenderThetaGen:NN.ZemsilF.34122.zm0@aeTDNQf
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Generic/Backdoor.c00

How to remove Backdoor.AsyncRAT.MSIL.Generic?

Backdoor.AsyncRAT.MSIL.Generic removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment