Risk

RiskTool.MSIL.PCOptimizer.b (file analysis)

Malware Removal

The RiskTool.MSIL.PCOptimizer.b is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskTool.MSIL.PCOptimizer.b virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

edgedl.gvt1.com
update.googleapis.com

How to determine RiskTool.MSIL.PCOptimizer.b?


File Info:

crc32: B48BF106
md5: e505e35a244b98f855dbbf46c6a5832d
name: E505E35A244B98F855DBBF46C6A5832D.mlw
sha1: d5f3971065bd92565b00f75b4093f80098a43d5d
sha256: 08cc09b19f15a24a62a06758dd90f9f1df87ba5248ab10fab516019008827e4d
sha512: e4c45ea5c9fe6a9ced19d842b39b4f266f99d7c52a0e5b2408eaa7ff7c0ea63f5b21764bad39965351fa45e122c03cbdd1a65ce25e98929d38dbf3a41f3bf899
ssdeep: 49152:apTBs2J5T3Nuuj9cjCIHU5I616GFtlx9nVUWHdd:iVxYirIwI616wlx9nhX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

RiskTool.MSIL.PCOptimizer.b also known as:

Elasticmalicious (high confidence)
DrWebProgram.Unwanted.1152
CAT-QuickHealRisktool.NSIS.Pcoptimizer.A
Qihoo-360Win32/Virus.IM.839
McAfeeArtemis!E505E35A244B
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusAdware ( 004bd8f61 )
K7GWAdware ( 004bd8f61 )
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Dropper-gen [Drp]
Kasperskynot-a-virus:RiskTool.MSIL.PCOptimizer.b
AlibabaRiskWare:MSIL/PCOptimizer.707ca3ea
NANO-AntivirusRiskware.Win32.MyPCBackup.echhpy
EmsisoftApplication.PCBackOpt (A)
F-SecureHeuristic.HEUR/AGEN.1124328
ZillyaDownloader.Generic.Win32.4775
McAfee-GW-EditionBehavesLike.Win32.BadFile.vc
SophosGeneric PUA NF (PUA)
IkarusPUA.MSIL.Mypcbackup
AviraHEUR/AGEN.1124328
Antiy-AVLTrojan/Win32.TSGeneric
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Occamy.C08
ZoneAlarmnot-a-virus:RiskTool.MSIL.PCOptimizer.b
GDataWin32.Trojan.Agent.FW4FWX
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.BundleInstaller.R194324
VBA32CIL.HeapOverride.Heur
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
ESET-NOD32a variant of Win32/MyPCBackup.D potentially unwanted
YandexRiskware.PCOptimizer!VjX7yriD+y8
SentinelOneStatic AI – Suspicious PE – Adware
eGambitUnsafe.AI_Score_99%
FortinetRiskware/PCOptimizer
AVGWin32:Dropper-gen [Drp]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)

How to remove RiskTool.MSIL.PCOptimizer.b?

RiskTool.MSIL.PCOptimizer.b removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment