Backdoor

Backdoor.MSIL.NanoBot.beng removal tips

Malware Removal

The Backdoor.MSIL.NanoBot.beng is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.MSIL.NanoBot.beng virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.MSIL.NanoBot.beng?


File Info:

crc32: 77D4F447
md5: 10d1dc044b4f546c7e1c29f40d364a77
name: 10D1DC044B4F546C7E1C29F40D364A77.mlw
sha1: 275b5fe2add721d65ff29db7dc36d5501e3c9ad3
sha256: 7a84aa92f81ee3e9e694a8105b94a825147abf2504572a8fb3fb333d574bd33f
sha512: 2e2734cadbd6d6037e06b4119ece2fa22d0f1dac13ed1174ad68aea3791184c199300cd20f3ed104a0802015f73db3b8c843da5f19737be47c22a7261bd2061c
ssdeep: 3072:5+tl5Nwfu2O2xdqJqSlWbLPz374eQBDplqLkgtLDebI5aj/pdmi:sBojbjjEeWDplqQgtubI54dm
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Classified
InternalName: skrsild
FileVersion: 2.00
CompanyName: Classified
LegalTrademarks: Classified
Comments: Classified
ProductName: Classified
ProductVersion: 2.00
FileDescription: Classified
OriginalFilename: skrsild.exe

Backdoor.MSIL.NanoBot.beng also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
SymantecTrojan Horse
APEXMalicious
AvastFileRepMalware
KasperskyBackdoor.MSIL.NanoBot.beng
BitDefenderTrojan.GenericKD.46387517
MicroWorld-eScanTrojan.GenericKD.46387517
Ad-AwareTrojan.GenericKD.46387517
BitDefenderThetaGen:NN.ZevbaF.34692.mm0@aS86Zhhi
McAfee-GW-EditionBehavesLike.Win32.Trojan.dm
FireEyeGeneric.mg.10d1dc044b4f546c
EmsisoftTrojan.GenericKD.46387517 (B)
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Wacatac.B!ml
AegisLabTrojan.Multi.Generic.4!c
GDataWin32.Trojan-Downloader.GuLoader.HS35NH
McAfeeArtemis!10D1DC044B4F
MAXmalware (ai score=83)
VBA32BScope.Trojan.Agent
MalwarebytesTrojan.GuLoader
PandaTrj/GdSda.A
IkarusTrojan.VB.Crypt
FortinetW32/Malicious_Behavior.SBX
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Backdoor.MSIL.NanoBot.beng?

Backdoor.MSIL.NanoBot.beng removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment