Trojan

Trojan:MSIL/AgentTesla.MTE!MTB removal

Malware Removal

The Trojan:MSIL/AgentTesla.MTE!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/AgentTesla.MTE!MTB virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan:MSIL/AgentTesla.MTE!MTB?


File Info:

crc32: CFA95040
md5: f0fd086936bb60dce9dfe841435d8111
name: mon.exe
sha1: df80d0a6266ce72f57c89e9f3ad25592436dce66
sha256: 320788fb96db3db7ab29522b9656b42d33514ea32dc9007e04006a67fd6c6b24
sha512: 9a49a16caf34f20dd217c7d33a4c766c1cb17cc14dcefcb4b2a29c2ffe938ae1f2e5a68694ed28f1aaab9b8570fcdf5a75e866a394df69b797fbe9ddc0a599b3
ssdeep: 12288:2iPBnjKbmRd1dhTVePsF/7xJ2mTkxlBrdjTneYOM72rBOtW/OQ8fCEXjTcTxbNg:VdjKMThZePsF/7xogkx/JeYOBItW2HZ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Trojan:MSIL/AgentTesla.MTE!MTB also known as:

MicroWorld-eScanTrojan.GenericKD.33587834
FireEyeGeneric.mg.f0fd086936bb60dc
Qihoo-360Generic/Trojan.21a
ALYacTrojan.GenericKD.33587834
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0056081c1 )
BitDefenderTrojan.GenericKD.33587834
K7GWTrojan ( 0056081c1 )
Cybereasonmalicious.6266ce
TrendMicroTROJ_GEN.R002C0PD220
BitDefenderThetaGen:NN.ZemsilF.34106.SmW@a8tAYDe
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.VFT
TrendMicro-HouseCallTROJ_GEN.R002C0PD220
AvastWin32:TrojanX-gen [Trj]
GDataMSIL.Packed.Skaldring.D
KasperskyHEUR:Trojan.MSIL.Crypt.gen
AlibabaTrojan:Win32/csharp.ali2000008
ViRobotTrojan.Win32.Z.Crypt.728064
AegisLabTrojan.MSIL.Crypt.4!c
RisingTrojan.Kryptik!8.8 (CLOUD)
Ad-AwareTrojan.GenericKD.33587834
SophosMal/Generic-S
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebTrojan.KillProc2.9579
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
SentinelOneDFI – Malicious PE
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.33587834 (B)
APEXMalicious
CyrenW32/MSIL_Kryptik.AJK.gen!Eldorado
JiangminTrojan.MSIL.olpw
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan/MSIL.Crypt
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D200827A
ZoneAlarmHEUR:Trojan.MSIL.Crypt.gen
MicrosoftTrojan:MSIL/AgentTesla.MTE!MTB
Acronissuspicious
McAfeeRDN/Generic.rp
MAXmalware (ai score=81)
PandaTrj/GdSda.A
YandexTrojan.Kryptik!xOArbQqB+HA
IkarusTrojan.Inject
FortinetMSIL/GenKryptik.EGOA!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan:MSIL/AgentTesla.MTE!MTB?

Trojan:MSIL/AgentTesla.MTE!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment