Backdoor

Backdoor.MSIL.DarkKomet information

Malware Removal

The Backdoor.MSIL.DarkKomet is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.MSIL.DarkKomet virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine Backdoor.MSIL.DarkKomet?


File Info:

crc32: E01D4F4F
md5: 714a08f16bbae43f96dc7274176a7787
name: 714A08F16BBAE43F96DC7274176A7787.mlw
sha1: 6334e1d56d9c98398d2338fa2ec75d4ec72d756f
sha256: c1d30ac10457e6ef204271734ac30c15351153e6cad663000a422ec9c22cacca
sha512: bad835071e39563f7901c7dfa983087d2f61bcbebb8c4636c81ca4438a636dac4ecee02bb24d25917b86babc197ceeab7a0b436a04fc72a03014c01a64fbe5e8
ssdeep: 12288:3AlhBOTo4uuId+zaDoYKD3nz9jfh3utjm4d+byqgb3vE9E7AYJsRf3BVsMED9v/E:3+hBOkPdzofmK4dukc+7B8pVrEp0
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright VisorView 2021
Assembly Version: 1.0.0.0
InternalName: VisorView.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: VisorView
ProductVersion: 1.0.0.0
FileDescription: VisorView
OriginalFilename: VisorView.exe

Backdoor.MSIL.DarkKomet also known as:

K7AntiVirusTrojan ( 004fb4181 )
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.41837
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 004fb4181 )
Cybereasonmalicious.56d9c9
CyrenW32/MSIL_Kryptik.CHW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.HNX
APEXMalicious
AvastWin32:BotX-gen [Trj]
KasperskyHEUR:Backdoor.MSIL.DarkKomet.gen
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34678.9m3@ai3oW7c
McAfee-GW-EditionBehavesLike.Win32.Trojan.dc
FireEyeGeneric.mg.714a08f16bbae43f
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:MSIL/AgentTesla.DK!MTB
GDataMSIL.Backdoor.BlackNet.KTGE0M
AhnLab-V3Trojan/Win32.Nitol.C1636978
McAfeeArtemis!714A08F16BBA
MalwarebytesBackdoor.NanoCore
MaxSecureTrojan.Malware.121218.susgen
FortinetMSIL/Kryptik.HNX!tr
AVGWin32:BotX-gen [Trj]
Qihoo-360HEUR/QVM03.0.A1FB.Malware.Gen

How to remove Backdoor.MSIL.DarkKomet?

Backdoor.MSIL.DarkKomet removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment