Malware

MSIL.Packy.1 (B) malicious file

Malware Removal

The MSIL.Packy.1 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL.Packy.1 (B) virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine MSIL.Packy.1 (B)?


File Info:

name: DE3E8580052D5F3BC59C.mlw
path: /opt/CAPEv2/storage/binaries/3ca784a8a94a6b10a36906ab44d4b187681d439432a580185b81610d3646312e
crc32: C517849B
md5: de3e8580052d5f3bc59cee7a04db06b2
sha1: 57a12679dc4b3d298d2961847199ec365532b8a2
sha256: 3ca784a8a94a6b10a36906ab44d4b187681d439432a580185b81610d3646312e
sha512: ad5b9110e7f631dd7d567320b63c26f5d440a174c798b535387ffd7644c78f720d1acf1549ee7e269b8ab19add31a9051f3e0cc820c029cfd68b7264a7c09221
ssdeep: 12288:nBw0L5LJZ827rxGZLxArFCJEHv5IvwoWRvBDK48cQ:nBw4Z8q8hxArmEHvKvKvBDx8cQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T199D423117588C6A3EE2A55318E5DC2BCB32DDC962A5489FB17C47F1F39B21388AD3760
sha3_384: df3e8fbd6d857c7950b49ed32f39ed8f38a4b3cf3a4e6ec0f785127339ab4ac99e2a8907fb20a85762f2a2ef6d02b7f5
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-09-01 18:35:48

Version Info:

Translation: 0x0000 0x04b0
Comments: XCoder
FileDescription: XBinder
FileVersion: 2.0.0.0
InternalName: XBinder.exe
LegalCopyright: Copyright © 2022
OriginalFilename: XBinder.exe
ProductName: XBinder
ProductVersion: 2.0.0.0
Assembly Version: 2.0.0.0

MSIL.Packy.1 (B) also known as:

BkavW32.AIDetectMalware.CS
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.MSIL.Packy.1
FireEyeGeneric.mg.de3e8580052d5f3b
CAT-QuickHealBackdoor.MSIL
SkyhighGenericRXUZ-JR!DE3E8580052D
McAfeeGenericRXUZ-JR!DE3E8580052D
Cylanceunsafe
ZillyaDropper.Agent.Win32.557220
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00596b4f1 )
AlibabaBackdoor:MSIL/XWormRAT.bcf5fe80
K7GWTrojan ( 00596b4f1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.FOV
APEXMalicious
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
BitDefenderGen:Variant.MSIL.Packy.1
NANO-AntivirusTrojan.Win32.Crysan.jzktja
AvastWin32:CrypterX-gen [Trj]
EmsisoftGen:Variant.MSIL.Packy.1 (B)
GoogleDetected
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.MulDropNET.65
VIPREGen:Variant.MSIL.Packy.1
Trapminemalicious.moderate.ml.score
SophosTroj/Mdrop-JVT
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Autoit.bxz
VaristW32/MSIL_Agent.BUD.gen!Eldorado
AviraTR/Dropper.Gen
Kingsoftmalware.kb.c.1000
ArcabitTrojan.MSIL.Packy.1
ViRobotTrojan.Win.Z.Agent.619008.AM
ZoneAlarmHEUR:Backdoor.MSIL.Crysan.gen
GDataGen:Variant.MSIL.Packy.1
AhnLab-V3Trojan/Win.Generic.C5052738
BitDefenderThetaAI:Packer.7AD560C91F
ALYacGen:Variant.MSIL.Packy.1
MAXmalware (ai score=89)
MalwarebytesTrojan.Dropper.MSIL.Generic
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DDI24
TencentMalware.Win32.Gencirc.13ee0cfe
IkarusTrojan.MSIL.Injector
FortinetMSIL/Agent.FOV!tr
AVGWin32:CrypterX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan[dropper]:MSIL/XWormRAT.A!MTB

How to remove MSIL.Packy.1 (B)?

MSIL.Packy.1 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment