Trojan

Trojan.MSIL.XSB malicious file

Malware Removal

The Trojan.MSIL.XSB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MSIL.XSB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Attempts to create or modify system certificates
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
pastebin.com

How to determine Trojan.MSIL.XSB?


File Info:

crc32: 7EF76CEE
md5: 0a614a9406ac034e660024b6c1879562
name: 0A614A9406AC034E660024B6C1879562.mlw
sha1: 8af368878d4a0aaa41ad272720005207d304db8a
sha256: 1a1f7889e2800b996eaedcc54df6a0eed27140b3e8650e705fa4a173d1bc4467
sha512: 79dc3d423f261d79153bdd36affc5485586ef4b28e6d1012e86025fe9a7935549d0392d5cb21ac038888e98d1f2ec35736a79fb39415b59947185d5201212104
ssdeep: 48:6YiET3+zggZmWG/EZaElNp1OtSy98sPhSOTLN49b3fJ6FO+nhMTCX39x54tdtdl:JOLpGsM2gtz8sPR+LbkFXCG9ozNt
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2017
Assembly Version: 1.0.0.0
InternalName: ConsoleApp1.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: ConsoleApp1
ProductVersion: 1.0.0.0
FileDescription: ConsoleApp1
OriginalFilename: ConsoleApp1.exe

Trojan.MSIL.XSB also known as:

K7AntiVirusTrojan-Downloader ( 005205331 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader25.65240
CynetMalicious (score: 99)
ALYacTrojan.MSIL.XSB
CylanceUnsafe
ZillyaDownloader.Tiny.Win32.10038
SangforBackdoor.MSIL.Generic.ky
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan-Downloader ( 005205331 )
Cybereasonmalicious.406ac0
SymantecML.Attribute.HighConfidence
ESET-NOD32MSIL/TrojanDownloader.Tiny.WB
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Backdoor.MSIL.Generic
BitDefenderTrojan.MSIL.XSB
NANO-AntivirusTrojan.Win32.Tiny.farnmf
MicroWorld-eScanTrojan.MSIL.XSB
TencentMsil.Backdoor.Generic.Gbp
Ad-AwareTrojan.MSIL.XSB
SophosMal/Generic-S
ComodoTrojWare.MSIL.Tiny.WB@7hr0uc
BitDefenderThetaGen:NN.ZemsilF.34236.am0@a4zdsG
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXDO-TY!0A614A9406AC
FireEyeGeneric.mg.0a614a9406ac034e
EmsisoftTrojan.MSIL.XSB (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.MSIL.ync
AviraHEUR/AGEN.1100757
Antiy-AVLTrojan/Generic.ASMalwS.25E65EA
MicrosoftTrojan:Win32/Skeeyah.A!rfn
GDataTrojan.MSIL.XSB
AhnLab-V3Trojan/Win32.Tiny.C2303539
McAfeeGenericRXDO-TY!0A614A9406AC
MAXmalware (ai score=100)
VBA32TrojanDownloader
MalwarebytesTrojan.Downloader.MSIL
PandaTrj/CI.A
IkarusTrojan-Downloader.MSIL.Tiny
FortinetMSIL/Tiny.WB!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.MSIL.XSB?

Trojan.MSIL.XSB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment