Malware

MSIL/Horamazi.B information

Malware Removal

The MSIL/Horamazi.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Horamazi.B virus can do?

  • Creates RWX memory
  • A process created a hidden window

Related domains:

z.whorecord.xyz
a.tomx.xyz
kannabis.myftp.org

How to determine MSIL/Horamazi.B?


File Info:

crc32: 35FACC1B
md5: 580053dc133d27d567b83331948284d2
name: 580053DC133D27D567B83331948284D2.mlw
sha1: 632133f3630ff81868bfc3e9a7d908d37529d924
sha256: 7b3ad725cfc7549541a5b4806ebda802a851c55b2046e65f4bb3240bb5bafeaa
sha512: 7add3e715fbb6ed98923c247d405926d8c70389f4b9396209f25d70fe15c2d48ae5dbe25f01c64f1b0b1b61ab7e4ea18d02fe1d4205136d99b78ecd7284d740d
ssdeep: 768:UcOa5djGCdhP+0sh9ixMSIhMdxLCOhheu9FdOMXQBNUUVjajGhDJ:d+MbrxLChu9fOMXQBRVmahDJ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 Microsoft 2011
Assembly Version: 1.0.0.0
InternalName: kannabis.exe
FileVersion: 1.0.0.0
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename: kannabis.exe

MSIL/Horamazi.B also known as:

K7AntiVirusTrojan ( 700000121 )
LionicTrojan.Win32.Generic.b!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Razy.387688
CylanceUnsafe
ZillyaTrojan.Foreign.Win32.14314
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojanDropper:MSIL/Horamazi.09fcce0f
K7GWTrojan ( 700000121 )
Cybereasonmalicious.c133d2
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Horamazi.B
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Genericrxdr-9883257-0
KasperskyHEUR:Trojan-Dropper.Win32.Generic
BitDefenderGen:Variant.Razy.387688
NANO-AntivirusTrojan.Win32.MlwGen.dcmdem
MicroWorld-eScanGen:Variant.Razy.387688
TencentWin32.Trojan-dropper.Generic.Sttw
Ad-AwareGen:Variant.Razy.387688
SophosMal/Generic-S
ComodoMalware@#3oskgq1ke6on9
BitDefenderThetaGen:NN.ZemsilF.34058.em0@a43Vhth
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXDR-RK!580053DC133D
FireEyeGeneric.mg.580053dc133d27d5
EmsisoftGen:Variant.Razy.387688 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Generic.csl
WebrootW32.Malware.Gen
AviraTR/ATRAPS.Gen2
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.8AC901
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmHEUR:Trojan-Dropper.Win32.Generic
GDataGen:Variant.Razy.387688
McAfeeGenericRXDR-RK!580053DC133D
MAXmalware (ai score=99)
MalwarebytesMalware.AI.3604658084
PandaGeneric Malware
RisingTrojan.Generic@ML.100 (RDML:c4RZ2W6ZMAUwlQmhPdwV/w)
IkarusTrojan-Ransom.Foreign
FortinetMSIL/Generic.AP.2F058!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/TrojanDropper.Generic.HwMAEpsA

How to remove MSIL/Horamazi.B?

MSIL/Horamazi.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment