Trojan

Trojan.MSIL.Crypt.hxmb removal guide

Malware Removal

The Trojan.MSIL.Crypt.hxmb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MSIL.Crypt.hxmb virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Trojan.MSIL.Crypt.hxmb?


File Info:

name: AD653B9C3EDD786B61A4.mlw
path: /opt/CAPEv2/storage/binaries/a382ab5aa25a22296cc48aae53bf47f5dd4aeec062e85bd5da5338357621ff42
crc32: 5EF0C489
md5: ad653b9c3edd786b61a46d05837dd751
sha1: 889ff5decb3d9df84ea9bca14986c618cf1f2acf
sha256: a382ab5aa25a22296cc48aae53bf47f5dd4aeec062e85bd5da5338357621ff42
sha512: eda8dd7ee8c365e55b5a95b9ebfe28152539a9965f49800de28787da025472ad9f7f75ae3cd14920683a36d43f1b47f8a02eefe8a72bdbeb311c7fed572b581f
ssdeep: 12288:fpYDjI+FRrmmpQHacPlBxSXABpogvdoF5D5Oxchk8Afjs:aRrmmkrP/o4KKcy8f
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T157D4E1295DD5CECBDA2A5B7197E3F33170AC82FDBC9A4F81DA8D49E5B02094C3146878
sha3_384: f3d94bc85f97e7f2d8788be5afc2982ba999ae7637269c933e25f368b7597380fa8db9d4bb97a268e93e137663802c8f
ep_bytes: ff250020400000000000000000000000
timestamp: 2010-12-09 18:58:13

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: SecoUpdater
FileVersion: 1.0.9.0
InternalName: SecoUpdater.exe
LegalCopyright: Copyright KOMODIAS© 2021
LegalTrademarks:
OriginalFilename: SecoUpdater.exe
ProductName: SecoUpdater
ProductVersion: 1.0.9.0
Assembly Version: 1.0.9.0

Trojan.MSIL.Crypt.hxmb also known as:

LionicTrojan.MSIL.Crypt.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.ad653b9c3edd786b
McAfeeRDN/Generic.dx
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:MSIL/Generic.95b7a5e7
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyTrojan.MSIL.Crypt.hxmb
AvastWin32:Malware-gen
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34114.Lm3@aOGNoDl
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
VBA32TScope.Trojan.MSIL
SentinelOneStatic AI – Malicious PE
AVGWin32:Malware-gen
Cybereasonmalicious.ecb3d9

How to remove Trojan.MSIL.Crypt.hxmb?

Trojan.MSIL.Crypt.hxmb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment