Malware

Should I remove “MSIL/AsyncRAT.A”?

Malware Removal

The MSIL/AsyncRAT.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/AsyncRAT.A virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • CAPE detected the AsyncRat malware family
  • Binary file triggered YARA rule

How to determine MSIL/AsyncRAT.A?


File Info:

name: EDA00582318CD3EA33F2.mlw
path: /opt/CAPEv2/storage/binaries/fd312799c13bdbf61dd4ff1f39c3513f3c4b2140ad8a6b6fcc22e278f5fe01dd
crc32: 6C6C2784
md5: eda00582318cd3ea33f26207cbc96d98
sha1: f30ec5ecf27d9dde1e72fae529f1e4ce0cf8cae9
sha256: fd312799c13bdbf61dd4ff1f39c3513f3c4b2140ad8a6b6fcc22e278f5fe01dd
sha512: 8b9ce6f2c08b66c74a5e1edbd02ca62f14b2f77b26381afb14ff14dcbb633f506ddeef6a9b13fd7ba61983bdffaf4b7dff40a5cb230504deebb50b701d12ba78
ssdeep: 768:muSPNTdxr7xWUpHm7mo2qLMacuwBsV2PPIe4mX3hj770bRio0dX256mdzOrH+BDE:muSPNTdtW2pa9Be4sCbRindnKzOsdIx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T121232B007BE9812BF2BF4FB4A9F22245867AF2673602D64A1CC441DB5713FC696426F9
sha3_384: dda6d75877b9ae63e5379cab59851579965305a3daf69237a58ebd47a1eca4d6413efd3b724b534901856cc1d77b1d20
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-05-10 05:24:51

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 1.0.0.0
InternalName: Stub.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: Stub.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/AsyncRAT.A also known as:

BkavW32.AIDetectMalware.CS
ElasticWindows.Trojan.Asyncrat
ClamAVWin.Packed.Razy-9625918-0
CAT-QuickHealTrojan.IgenericFC.S14890850
SkyhighBehavesLike.Win32.Fareit.pm
ALYacGen:Trojan.Mardom.MN.13
Cylanceunsafe
ZillyaTrojan.Agent.Win32.1339969
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005678321 )
BitDefenderGen:Trojan.Mardom.MN.13
K7GWTrojan ( 005678321 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Mardom.MN.13
VirITTrojan.Win32.MSIL_Heur.A
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/AsyncRAT.A
APEXMalicious
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
AlibabaBackdoor:MSIL/AsyncRat.8b04b21b
MicroWorld-eScanGen:Trojan.Mardom.MN.13
AvastWin32:DropperX-gen [Drp]
RisingTrojan.AntiVM!1.CF63 (CLASSIC)
EmsisoftTrojan.Agent (A)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Siggen9.56514
VIPREGen:Trojan.Mardom.MN.13
TrendMicroBackdoor.MSIL.ASYNCRAT.SMXSR
FireEyeGeneric.mg.eda00582318cd3ea
SophosTroj/AsyncRat-B
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.MSIL.cxnh
VaristW32/Samas.B.gen!Eldorado
AviraTR/Dropper.Gen
MAXmalware (ai score=80)
Antiy-AVLTrojan[Backdoor]/MSIL.Crysan
MicrosoftBackdoor:MSIL/AsyncRat.AD!MTB
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
ZoneAlarmHEUR:Backdoor.MSIL.Crysan.gen
GDataMSIL.Trojan.PSE.1BITXMO
GoogleDetected
AhnLab-V3Malware/Win32.RL_Generic.C3558490
McAfeeFareit-FZT!EDA00582318C
VBA32OScope.Backdoor.MSIL.Crysan
MalwarebytesGeneric.Malware.AI.DDS
TencentTrojan.Msil.Agent.zap
IkarusBackdoor.AsyncRat
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.CFQ!tr
BitDefenderThetaGen:NN.ZemsilF.36802.cm0@aiD8EFb
AVGWin32:DropperX-gen [Drp]
Cybereasonmalicious.2318cd
DeepInstinctMALICIOUS
alibabacloudBackdoor[rat]:MSIL/Agenttesla.Stub.LQL!MTB

How to remove MSIL/AsyncRAT.A?

MSIL/AsyncRAT.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment