Trojan

TrojanDownloader:MSIL/AgentTesla.JTN!MTB information

Malware Removal

The TrojanDownloader:MSIL/AgentTesla.JTN!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:MSIL/AgentTesla.JTN!MTB virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine TrojanDownloader:MSIL/AgentTesla.JTN!MTB?


File Info:

crc32: 7AA6BB66
md5: 8c129b9509840a6824ac20b43d5e0b15
name: 8C129B9509840A6824AC20B43D5E0B15.mlw
sha1: 636631caa8bb8934141d9aef73e1b4ff762d0870
sha256: 5c94baed9902a0042577180ae82c0cce8edf18bc5ab177d2ea3652cde26b1b88
sha512: 9d4df5cd85f28f65e7443fb41cf39417a36e19132c374043e4c8a359eb120def07f6582290b1b9e7823c116e532784c9d8f7bd6f81e6d7f12df0523e50be4129
ssdeep: 768:iieMwbPTEMItH7RQV/2Dry/ZtpQtGZ1+/Zm4DiejLamUp+KbN1xvsHlkZ9YYe:PqbPTRe1QV/Sy/NQtGZ1+/mw0gSYYe
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.1.0
InternalName: hfsdgsddfs.exe
FileVersion: 1.0.1.0
CompanyName: hfsdgsddfs
LegalTrademarks:
Comments: hfsdgsddfs
ProductName: hfsdgsddfs
ProductVersion: 1.0.1.0
FileDescription: hfsdgsddfs
OriginalFilename: hfsdgsddfs.exe

TrojanDownloader:MSIL/AgentTesla.JTN!MTB also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
ALYacGen:Variant.Cerbu.114751
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 00587f861 )
K7AntiVirusTrojan ( 00587f861 )
CyrenW32/MSIL_Kryptik.FPR.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.URO
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Banker.MSIL.ClipBanker.gen
BitDefenderGen:Variant.Cerbu.114751
MicroWorld-eScanGen:Variant.Cerbu.114751
TencentWin32.Trojan.Cerbu.Eana
Ad-AwareGen:Variant.Cerbu.114751
SophosGeneric ML PUA (PUA)
ComodoTrojWare.Win32.UMal.ixzom@0
BitDefenderThetaGen:NN.ZemsilF.34170.hu0@aGXSiwf
McAfee-GW-EditionBehavesLike.Win32.Generic.ct
FireEyeGeneric.mg.8c129b9509840a68
EmsisoftGen:Variant.Cerbu.114751 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Agent.llfqc
KingsoftWin32.Heur.KVMH008.a.(kcloud)
MicrosoftTrojanDownloader:MSIL/AgentTesla.JTN!MTB
GridinsoftTrojan.Win32.Downloader.dd!n
ArcabitTrojan.Cerbu.D1C03F
GDataGen:Variant.Cerbu.114751
AhnLab-V3Trojan/Win.MSILKrypt.R442609
McAfeeAgentTesla-FDCV!8C129B950984
MAXmalware (ai score=100)
VBA32CIL.HeapOverride.Heur
MalwarebytesTrojan.Downloader
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R06CC0PIO21
IkarusTrojan.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/ClipBanker.URO!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove TrojanDownloader:MSIL/AgentTesla.JTN!MTB?

TrojanDownloader:MSIL/AgentTesla.JTN!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment