Crack

Should I remove “HackTool.MSIL.Astral”?

Malware Removal

The HackTool.MSIL.Astral is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool.MSIL.Astral virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine HackTool.MSIL.Astral?


File Info:

name: 649876AB78C11C00405F.mlw
path: /opt/CAPEv2/storage/binaries/53855ebcb9d7309a2206ba9cde643e69b38abccfd6714f2fef5bd1eb29fcb615
crc32: 95F8EF09
md5: 649876ab78c11c00405f7dccb8c6f88c
sha1: d01af8bf12a4553e04f30279b07e1c7913ef7ea7
sha256: 53855ebcb9d7309a2206ba9cde643e69b38abccfd6714f2fef5bd1eb29fcb615
sha512: b18ddc6d1501536a4e05bcb5cb170d249e008d530d5d9f3736961948bf371542e2d010d10a06249179b58d4a5ca754187df1f46535744ac3504fb1d513077699
ssdeep: 6144:y/fknUWzhCUDCU5NCUfLvCSlfRfxCLk26hUJjQTF7DneciKJc:y/m7ndNDLvRhUJjQJ7g
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T122A4599132B98FEAF27E47F901B14AA257F12D2B681DD94D6DD671CF6B38B404E00A07
sha3_384: 73dd3f790e1aea8c55acbb767f6259edce08f951843533cfeab7183933eec5281df72dd7616fcaa88f467ebd3c3a4143
ep_bytes: ff250020400000000000000000000000
timestamp: 2055-03-12 01:19:50

Version Info:

Translation: 0x0000 0x04b0
Comments: Panel to send attacks
CompanyName: HoverCore
FileDescription: HomeServices
FileVersion: 1.0.0.0
InternalName: HomeServices.exe
LegalCopyright: Copyright © 2021
LegalTrademarks: By HoverCore
OriginalFilename: HomeServices.exe
ProductName: HomeServices
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

HackTool.MSIL.Astral also known as:

FireEyeTrojan.GenericKD.47510883
McAfeeGenericRXQG-HK!649876AB78C1
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002C0PL821
KasperskyHEUR:HackTool.MSIL.Astral.gen
BitDefenderTrojan.GenericKD.47510883
MicroWorld-eScanTrojan.GenericKD.47510883
AvastWin32:TrojanX-gen [Trj]
Ad-AwareTrojan.GenericKD.47510883
EmsisoftTrojan.GenericKD.47510883 (B)
TrendMicroTROJ_GEN.R002C0PL821
McAfee-GW-EditionGenericRXQG-HK!649876AB78C1
SophosMal/Generic-S
GDataTrojan.GenericKD.47510883
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.34E4A2C
GridinsoftRansom.Win32.Sabsik.sa
APEXMalicious
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Malware/Win.Generic.C4541297
ALYacTrojan.GenericKD.47510883
CylanceUnsafe
FortinetPossibleThreat
AVGWin32:TrojanX-gen [Trj]

How to remove HackTool.MSIL.Astral?

HackTool.MSIL.Astral removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment