Malware

What is “MSIL/Behinder.B”?

Malware Removal

The MSIL/Behinder.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Behinder.B virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine MSIL/Behinder.B?


File Info:

name: CD56A5A7835B71DF463E.mlw
path: /opt/CAPEv2/storage/binaries/544ec3e40378443300ba7f9852e19e5774e519c7eb83c30e42adb4f9f60fa71a
crc32: D9088E61
md5: cd56a5a7835b71df463ec416259e6f8f
sha1: 75cc9b2517118f6fc2ac82422928cfd82e4f88c5
sha256: 544ec3e40378443300ba7f9852e19e5774e519c7eb83c30e42adb4f9f60fa71a
sha512: 48e01d1adc2691dad1513de1349d2681146c686a305631d4afe0862ea86466a2b19a4c8e679b163127f7f5e0e0c61287bc32a929dd49b1e1b240619092ea05a7
ssdeep: 192:Dgf7aXkPtpfo6T8ilLbAYcQdxdfcgGZJWX0djdonpVt9fT1ChCvj:kf7aXUfw6T8ilIPwXkgkXYpVt2kj
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T172121A4E779C4F13C0AD51FC8572821173B7E126E253DB2F9DD462E82CA73844A907A7
sha3_384: 5a89cd76afa8674acc5045d67d7f8088f6193319806211eea37595aa5d899ecab5f9be6b41c15aa6930f53175edd30a3
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-08-24 10:11:48

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: Cmd.dll
LegalCopyright:
OriginalFilename: Cmd.dll
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

MSIL/Behinder.B also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Behinder.4!c
MicroWorld-eScanTrojan.GenericKD.71874474
FireEyeTrojan.GenericKD.71874474
SkyhighArtemis
McAfeeArtemis!CD56A5A7835B
ZillyaTrojan.Behinder.Win32.85
SangforTrojan.Win32.Behinder.V4za
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Behinder.5bd4b228
SymantecTrojan.Gen.MBT
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of MSIL/Behinder.B
APEXMalicious
BitDefenderTrojan.GenericKD.71874474
AvastWin32:MalwareX-gen [Trj]
SophosMal/Generic-S
F-SecureTrojan.TR/Redcap.hppeo
VIPRETrojan.GenericKD.71874474
EmsisoftTrojan.GenericKD.71874474 (B)
SentinelOneStatic AI – Suspicious PE
GoogleDetected
AviraTR/Redcap.hppeo
MAXmalware (ai score=85)
Antiy-AVLTrojan/MSIL.Behinder
ArcabitTrojan.Generic.D448B7AA
GDataTrojan.GenericKD.71874474
ALYacTrojan.GenericKD.71874474
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H0CCE24
IkarusTrojan.MSIL.Behinder
MaxSecureTrojan.Malware.236977260.susgen
FortinetMSIL/Behinder.B!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan:MSIL/Behinder.B

How to remove MSIL/Behinder.B?

MSIL/Behinder.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment