Trojan

Should I remove “Trojan.Msposer”?

Malware Removal

The Trojan.Msposer is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Msposer virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Msposer?


File Info:

name: E8CBFA98F93E123212C2.mlw
path: /opt/CAPEv2/storage/binaries/c28213cc368d96faa6a8ce5d0bff0e6ca8863da468973a1e0229083dc4e2b7f2
crc32: 3603455D
md5: e8cbfa98f93e123212c28e26e6fd28e4
sha1: c751caa0fcbd180b94a6f9eecc76cf7db46d7c07
sha256: c28213cc368d96faa6a8ce5d0bff0e6ca8863da468973a1e0229083dc4e2b7f2
sha512: ab22cda68cdb5fc627f025bded9a3b5155583f6e61be5f767dd4776a004d1116213553b957f3255354e4f9247bfaf6f44e4a211b4251e2fff258a19f2bad2eb4
ssdeep: 96:/lxBfEZ+A69d3/hDgarXSanHHIaTnn3qKjI2:/TRA6rhdiannnT3qeI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18672FE83F1B4DC23F8C64B3359778BE2DA95BF394E254E0778907B6E2C361901A41B56
sha3_384: dbb2d5f860a8a2721efa7ec3e37bb3512f34273ec1abaa8b6ce9a490fcb3cd9a6631194192e395406541c25adbe4afb6
ep_bytes: 6864124000e8f0ffffff000000000000
timestamp: 2016-11-04 00:39:39

Version Info:

Translation: 0x0409 0x04b0
ProductName: Project1
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Project1
OriginalFilename: Project1.exe

Trojan.Msposer also known as:

Elasticmalicious (moderate confidence)
DrWebTrojan.MulDrop3.6111
FireEyeGeneric.mg.e8cbfa98f93e1232
CyrenW32/S-b65c7178!Eldorado
tehtrisGeneric.Malware
APEXMalicious
Trapminemalicious.high.ml.score
JiangminTrojan/Generic.azcdm
GoogleDetected
VBA32Trojan.Msposer
MalwarebytesMachineLearning/Anomalous.95%
IkarusWorm.Win32.AutoRun
DeepInstinctMALICIOUS

How to remove Trojan.Msposer?

Trojan.Msposer removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment