Crack

HackTool:MSIL/SharpZeroLogon removal instruction

Malware Removal

The HackTool:MSIL/SharpZeroLogon is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:MSIL/SharpZeroLogon virus can do?

  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine HackTool:MSIL/SharpZeroLogon?


File Info:

name: BAE847E8F1BE533F52DB.mlw
path: /opt/CAPEv2/storage/binaries/7a05fd67e9344d27c90a7196ab32cbaf1ee8c14f8655e87cc3ebddca7eacebdf
crc32: C8F3A8C1
md5: bae847e8f1be533f52db37112dd93650
sha1: 4c8e2077923c970a5f963e377e13d835c0bc2f3f
sha256: 7a05fd67e9344d27c90a7196ab32cbaf1ee8c14f8655e87cc3ebddca7eacebdf
sha512: d7d0ab045fa42ee6308d11af85277707676e30ace362d7adfc785a6484c5e5272765663baeae00e3a677770831e57e0ff3eac61a5e83ef83c26fa59ad8a4e3e4
ssdeep: 96:GCL2Z6mJj12h4EKu7XlqAnI51F0Jge/bMh+kGZ2oil0yRCCk2BzNt:GCLXmJja7VqAn0zcoGZ2oil0yRPk2D
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15FF19412E3E40236F9BB1B31ACB353410BB9FA919D774B2E25D5420B6C72644CE63B67
sha3_384: ac759b9d54f194e6e255ac29e3612a9b537a50802366cf3d0d4ff0d7175e579f9b3b2d2a3cd2852e2c1b81d10cd2362d
ep_bytes: ff250020400000000000000000000000
timestamp: 2078-04-26 12:51:17

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: SharpZeroLogon
FileVersion: 1.0.0.0
InternalName: SharpZeroLogon.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: SharpZeroLogon.exe
ProductName: SharpZeroLogon
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

HackTool:MSIL/SharpZeroLogon also known as:

LionicHacktool.Multi.CVE-2020-1472.3!c
MicroWorld-eScanGeneric.Fochi.MSIL.5.67CC587B
ClamAVWin.Exploit.CVE_2020_1472-9769797-0
FireEyeGeneric.Fochi.MSIL.5.67CC587B
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacMisc.HackTool.Inject.FE
MalwarebytesHackTool.SharpZeroLogon
ZillyaExploit.CVE20201472.Win32.8
SangforExploit.Win32.CVE-2020-1472.fireeye
K7AntiVirusExploit ( 005703c51 )
AlibabaExploit:MSIL/CVE-2020-1472.b6afc152
K7GWExploit ( 005703c51 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/MSIL_Agent.EGT.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Exploit.CVE-2020-1472.A
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Exploit.Multi.CVE-2020-1472.gen
BitDefenderGeneric.Fochi.MSIL.5.67CC587B
NANO-AntivirusExploit.Win32.Multi.idsewr
AvastWin32:CVE-2020-1472-A [Expl]
TencentWin32.Exploit.Cve-2020-1472.Xtjl
SophosExp/20201472-A
F-SecureTrojan.TR/Redcap.binsg
DrWebExploit.CVE-2020-1472.2
VIPREGeneric.Fochi.MSIL.5.67CC587B
TrendMicroHackTool.MSIL.Rubeus.C
McAfee-GW-EditionHackTool-FEY!BAE847E8F1BE
EmsisoftGeneric.Fochi.MSIL.5.67CC587B (B)
SentinelOneStatic AI – Malicious PE
GDataMSIL.Exploit.CVE-2020-1472.A
JiangminExploit.Multi.fp
WebrootW32.Hacktool.Sharpzerologon
AviraTR/Redcap.binsg
Antiy-AVLTrojan[Exploit]/Win32.CVE-2020-1472
ArcabitGeneric.Fochi.MSIL.5.67CC587B
ZoneAlarmHEUR:Exploit.Multi.CVE-2020-1472.gen
MicrosoftHackTool:MSIL/SharpZeroLogon
GoogleDetected
AhnLab-V3HackTool/Win32.SharpZeroLogon.C4199580
McAfeeHackTool-FEY!BAE847E8F1BE
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallHackTool.MSIL.Rubeus.C
RisingHackTool.SharpZeroLogon!1.D1D0 (CLASSIC)
YandexExploit.CVE-2020-1472!Mb1299y92jk
IkarusExploit.CVE-2020-1472
MaxSecureTrojan.Malware.107330251.susgen
FortinetMSIL/CVE_2020_1472.A!exploit
AVGWin32:CVE-2020-1472-A [Expl]
DeepInstinctMALICIOUS

How to remove HackTool:MSIL/SharpZeroLogon?

HackTool:MSIL/SharpZeroLogon removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment