Crack Risk

MSIL/Riskware.HackTool.Agent.CB (file analysis)

Malware Removal

The MSIL/Riskware.HackTool.Agent.CB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Riskware.HackTool.Agent.CB virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

How to determine MSIL/Riskware.HackTool.Agent.CB?


File Info:

name: 3F7ECB72EBFC88F57B2C.mlw
path: /opt/CAPEv2/storage/binaries/72a35aef26fdd80acdc1d5356d84ea2d1f19b22991a0a7a99b7859c9054bfe23
crc32: D5A51999
md5: 3f7ecb72ebfc88f57b2cea08fcb94098
sha1: 9c3643c96c17220d89a8552da7a8441bb21330cf
sha256: 72a35aef26fdd80acdc1d5356d84ea2d1f19b22991a0a7a99b7859c9054bfe23
sha512: 01ce9098003506acab0144d7dbfec6f3103d6fe08a3134d6adabeba0c6002544bb3b6b1f487e079d3de730f66efde31dd724a50e16d6c5e5407e9cb8b3360a54
ssdeep: 196608:aXUl3ia9ytI2cCZ2VGVDSLuNSLtDtzhDGsITUhfZQqgOnp8w:aXW3hU+dCUVGVD3SLtDt/IgZuM
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T142A633D9A4416481EC3CC0FA4F81DD783222BE9A34100D7561ED9E87FB7466EBC1A99F
sha3_384: bc33b84c3155734123135fffee949a6c5dac642e2b7b53efd6ce62346d421ca736643c2be359b8afa248b64ddd72b2d2
ep_bytes: ff250020400000000000000000000000
timestamp: 2010-12-09 18:58:13

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: WindowsApplication3
FileVersion: 1.0.0.0
InternalName: WindowsApplication3.exe
LegalCopyright: Copyright © 2019
LegalTrademarks:
OriginalFilename: WindowsApplication3.exe
ProductName: WindowsApplication3
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/Riskware.HackTool.Agent.CB also known as:

LionicTrojan.Win32.Ursu.4!c
CynetMalicious (score: 100)
FireEyeGeneric.mg.3f7ecb72ebfc88f5
McAfeeArtemis!3F7ECB72EBFC
CylanceUnsafe
K7AntiVirusRiskware ( 005567571 )
K7GWRiskware ( 005567571 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Riskware.HackTool.Agent.CB
APEXMalicious
AvastWin32:Malware-gen
TencentMsil.Risk.Riskware.Lnfa
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!PUP
SophosGeneric ML PUA (PUA)
Antiy-AVLTrojan/Generic.ASMalwS.1256C39
MicrosoftTrojan:Win32/Wacatac.B!ml
BitDefenderThetaGen:NN.ZemsilF.34294.@p3@a0WCQgm
VBA32Trojan.Miner
YandexRiskware.HackTool!r2XT8f+VVzA
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.74372978.susgen
FortinetRiskware/HackTool_Agent
WebrootW32.HackTool.Gen
AVGWin32:Malware-gen
Cybereasonmalicious.2ebfc8
Qihoo-360Win32/Trojan.Generic.HwMAveoA

How to remove MSIL/Riskware.HackTool.Agent.CB?

MSIL/Riskware.HackTool.Agent.CB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment