Malware

Generic.AsyncRAT.B.54D40E81 (file analysis)

Malware Removal

The Generic.AsyncRAT.B.54D40E81 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.AsyncRAT.B.54D40E81 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • CAPE detected the AsyncRat malware family
  • Binary compilation timestomping detected

How to determine Generic.AsyncRAT.B.54D40E81?


File Info:

name: E356D52C7B588E08FD1E.mlw
path: /opt/CAPEv2/storage/binaries/db8707f07c9c009f95709f45088791a9e0d9672c106eb61f662ecd1b533bfa7b
crc32: 832B37D7
md5: e356d52c7b588e08fd1eec04aad9016c
sha1: 555f085a431c9d2e4e8fdade309549f2b7c6734a
sha256: db8707f07c9c009f95709f45088791a9e0d9672c106eb61f662ecd1b533bfa7b
sha512: f6d15bd1ab7547186de706500790095e2a073b1583b4e60444e1578a4c26c84f964df2db7fd620f33a7b8b0e93933e5a0c7bddb54ff7b1c08fdd6f4fe1bf908e
ssdeep: 768:oo2+AZjirVk3ntk6CJ4M/DJFS2oPbTgFomn2CQI7Uzvg7sz2tYcFmVc6Kn:8Ya3g4M/DJjybMFog7QI7Uz+szKmVcln
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T119232B0037D88226E7FE5FBD5DF1614586B9F6232503C69A3CC841DA1B23BC78A526F6
sha3_384: 65ab42a06ee358d83fc6e23aa840292cd91dbfb74becacfc5c86f282de1b6ba732f34585fec0905194b2cf727da75866
ep_bytes: ff250020400000000000000000000000
timestamp: 2063-04-24 01:42:21

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 1.0.0.0
InternalName: Stub.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: Stub.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Generic.AsyncRAT.B.54D40E81 also known as:

BkavW32.AIDetectNet.01
tehtrisGeneric.Malware
CynetMalicious (score: 100)
CAT-QuickHealTrojan.WacatacFC.S12095901
McAfeePWS-FCQR!E356D52C7B58
CylanceUnsafe
ZillyaTrojan.Agent.Win32.1164868
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005614241 )
K7GWTrojan ( 005614241 )
Cybereasonmalicious.c7b588
CyrenW32/Samas.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Agent.CFQ
APEXMalicious
ClamAVWin.Packed.Razy-7486442-0
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
BitDefenderGeneric.AsyncRAT.B.54D40E81
MicroWorld-eScanGeneric.AsyncRAT.B.54D40E81
AvastWin32:CrypterX-gen [Trj]
RisingTrojan.AntiVM!1.CF63 (CLASSIC)
Ad-AwareGeneric.AsyncRAT.B.54D40E81
SophosML/PE-A
DrWebTrojan.MulDrop11.20928
VIPREIL:Trojan.MSILZilla.5827
TrendMicroCoinminer.MSIL.CRYSAN.SM
McAfee-GW-EditionBehavesLike.Win32.Fareit.pm
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.e356d52c7b588e08
EmsisoftGeneric.AsyncRAT.B.54D40E81 (B)
IkarusTrojan.MSIL.Agent
GDataMSIL.Backdoor.DCRat.D
JiangminBackdoor.MSIL.bzxl
AviraTR/Dropper.Gen
MAXmalware (ai score=87)
ArcabitIL:Trojan.MSILZilla.D16C3
SUPERAntiSpywareBackdoor.NyanWorm/Variant
MicrosoftTrojan:MSIL/Coinminer.GA!MTB
AhnLab-V3Trojan/Win32.AsyncRAT.R333051
Acronissuspicious
ALYacIL:Trojan.MSILZilla.5827
TACHYONBackdoor/W32.DN-Crysan.47616
MalwarebytesBackdoor.NyanWorm
TrendMicro-HouseCallCoinminer.MSIL.CRYSAN.SM
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.CJR!tr
BitDefenderThetaGen:NN.ZemsilF.34806.cm0@aahKaDo
AVGWin32:CrypterX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Generic.AsyncRAT.B.54D40E81?

Generic.AsyncRAT.B.54D40E81 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment