Backdoor

How to remove “Backdoor.MSIL.LightStone.vp”?

Malware Removal

The Backdoor.MSIL.LightStone.vp is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.MSIL.LightStone.vp virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality
  • A script process created a new process

How to determine Backdoor.MSIL.LightStone.vp?


File Info:

name: 1931D98222E72106C881.mlw
path: /opt/CAPEv2/storage/binaries/452df17bb56744e743cf150f0a18e69c85a9dec46219f4534a46798a625d94ab
crc32: 88ECD61A
md5: 1931d98222e72106c881965d363fc34f
sha1: b663aa18f6e4c08efe73592d81671afdb8d88ea1
sha256: 452df17bb56744e743cf150f0a18e69c85a9dec46219f4534a46798a625d94ab
sha512: fae2692701d234b4c9b877e94e5d3a506fac9a88b14aaf7f94a0ff2dd35a67ca8c62e22723ebb12937c80c62e942581b9b063eb024dc9be2964953fc413e7f41
ssdeep: 12288:2Qnk3GDYKGcblivT+tcr8VT1SgWhZihbP0teg6GqZfvjcdUx:6AOcZiJrMT1SgWvkbI43nx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T105D4F101B6C188B2D5361C325939AB21697D7D305E31DA6FF3E42A6EDA351C0A634FB3
sha3_384: 8527ed22838b9330167c5f7780971f9b6e519bd161f0309c9db60442ffdbd2af06fc98e76d18b76773d69d1f270b29d8
ep_bytes: e89a040000e98efeffff3b0d68d64300
timestamp: 2020-03-26 10:02:47

Version Info:

0: [No Data]

Backdoor.MSIL.LightStone.vp also known as:

LionicTrojan.MSIL.LightStone.m!c
MicroWorld-eScanTrojan.Uztuby.17
FireEyeGeneric.mg.1931d98222e72106
ALYacTrojan.Zmutzy.Lscpt.1
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforBackdoor.MSIL.LightStone.vp
K7AntiVirusAdware ( 0055b7eb1 )
AlibabaBackdoor:MSIL/LightStone.ad8178cf
K7GWAdware ( 0055b7eb1 )
Cybereasonmalicious.222e72
CyrenW32/S-536dd2d1!Eldorado
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32BAT/Runner.EG
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Uztuby-9774367-0
KasperskyBackdoor.MSIL.LightStone.vp
BitDefenderTrojan.Uztuby.17
NANO-AntivirusTrojan.Win32.LightStone.icnbhv
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
AvastWin32:Trojan-gen
Ad-AwareTrojan.Uztuby.17
SophosMal/Generic-R + Mal/RarMal-R
ComodoMalware@#1cm8deln7p6oy
TrendMicroTROJ_GEN.R002C0RB822
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
EmsisoftTrojan.Uztuby.17 (B)
IkarusTrojan.Rasftuby
GDataTrojan.Zmutzy.Lscpt.1
AviraTR/Runner.igtnn
GridinsoftRansom.Win32.Bladabindi.sa
ArcabitTrojan.Rasftuby.Gen.14
ZoneAlarmBackdoor.MSIL.LightStone.vp
MicrosoftBackdoor:Win32/Bladabindi!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4274798
McAfeeRDN/Generic BackDoor
MAXmalware (ai score=86)
VBA32Backdoor.MSIL.LightStone
MalwarebytesBackdoor.Bot.Drop
TrendMicro-HouseCallTROJ_GEN.R002C0RB822
TencentMsil.Backdoor.Lightstone.Dxmv
FortinetW32/Uztuby.17!tr
AVGWin32:Trojan-gen

How to remove Backdoor.MSIL.LightStone.vp?

Backdoor.MSIL.LightStone.vp removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment