Risk

RiskTool.MSIL.PCOptimizer.fb information

Malware Removal

The RiskTool.MSIL.PCOptimizer.fb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskTool.MSIL.PCOptimizer.fb virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Guard pages use detected – possible anti-debugging.
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Collects and encrypts information about the computer likely to send to C2 server
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Collects information to fingerprint the system
  • Uses suspicious command line tools or Windows utilities

How to determine RiskTool.MSIL.PCOptimizer.fb?


File Info:

name: 5AA5128D6D9B09F39502.mlw
path: /opt/CAPEv2/storage/binaries/93c7d1ef1ac54ed81077313d59ec8d3f0ebcf0d90572e189bfc1a9a97d23dc2a
crc32: 3DFB712F
md5: 5aa5128d6d9b09f39502e7265de504a3
sha1: 8f3f7a070b1954b48e89da7916dc62d22845e67e
sha256: 93c7d1ef1ac54ed81077313d59ec8d3f0ebcf0d90572e189bfc1a9a97d23dc2a
sha512: 7926a44709573b6ae60ace2cece96bfd0e65e55bbabc191f810b4e823d97508c76d00e478594471b7633fbc188d2d532c6ebcde43cc9b013730f3e7365588641
ssdeep: 24576:eQZFzLSVHWLqhiD7Vgup38jVs+4iLIptxRid/wOzLyhjnFcDow8aezxYHFu:e8zWVNhCp8d1LIptxY/YNFc98aeNmFu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T127A5331A32D5E287CA9B29B60DFF911201F8AA4327499E07D75E5EDEFC44322491E70B
sha3_384: b913446f5d89b62873c923ddd1f8348b0efba7890036664a33cdac0859da18cd1bbc6f1db9ba2fc6352d0cda447e2905
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:46

Version Info:

0: [No Data]

RiskTool.MSIL.PCOptimizer.fb also known as:

BkavW32.AIDetect.malware2
LionicRiskware.MSIL.PCOptimizer.1!c
Elasticmalicious (high confidence)
CAT-QuickHealRisktool.NSIS.Pcoptimizer.A
McAfeeArtemis!5AA5128D6D9B
VIPRETrojan.Win32.Generic!BT
SangforPUP.Win32.MyPCBackup.8
CrowdStrikewin/grayware_confidence_100% (W)
K7GWAdware ( 004bd8f61 )
K7AntiVirusAdware ( 004bd8f61 )
CyrenW32/Trojan.GHR.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/MyPCBackup.G potentially unwanted
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
Kasperskynot-a-virus:RiskTool.MSIL.PCOptimizer.fb
NANO-AntivirusTrojan.Win32.MyPCBackup.ebavee
SophosGeneric PUA IP (PUA)
F-SecureHeuristic.HEUR/AGEN.1203192
DrWebProgram.Unwanted.1152
ZillyaDownloader.Generic.Win32.5261
McAfee-GW-EditionBehavesLike.Win32.BadFile.vc
EmsisoftApplication.PCBackOpt (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.Crypt.o
AviraHEUR/AGEN.1220205
Antiy-AVLTrojan/Win32.TSGeneric
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Occamy.C93
ZoneAlarmnot-a-virus:RiskTool.MSIL.PCOptimizer.fb
VBA32CIL.HeapOverride.Heur
MalwarebytesMalware.AI.3606323894
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H0CA722
YandexRiskware.PCOptimizer!QDIz44qmPJ8
eGambitGeneric.Malware
FortinetRiskware/PCOptimizer
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove RiskTool.MSIL.PCOptimizer.fb?

RiskTool.MSIL.PCOptimizer.fb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment