Trojan

Trojan:MSIL/AgentTesla.OI!MTB information

Malware Removal

The Trojan:MSIL/AgentTesla.OI!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/AgentTesla.OI!MTB virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:MSIL/AgentTesla.OI!MTB?


File Info:

crc32: 16F1D0BF
md5: 5959b93c1292430a2a1e9eca7ff8b526
name: 5959B93C1292430A2A1E9ECA7FF8B526.mlw
sha1: b722c12e9730230ace4ea83bcd44eb9ec6187768
sha256: 43e378c04e0634ff031ad94a50974b1d524a6448d91f2a1fa9d9a6c56ea929ef
sha512: 53c25af96c6e6a37319d43aa6d100a8508ade2ec92b013cf570da64d3870e2f72d1ba8f2436eb4704e0fa69fe5b67bc1b268f2ad33956274c22334e5c60742bd
ssdeep: 6144:oQyKM2RG+zcwxOVbcEkX7oSCc0KDjryoiRWdT0UlWhfSH0dzzHocrAmMZ:v7M4GSYbcb83KDjWoiRvUeSW
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2019
Assembly Version: 1.0.0.0
InternalName: Test03.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: WindowsApplication8
ProductVersion: 1.0.0.0
FileDescription: WindowsApplication8
OriginalFilename: Test03.exe

Trojan:MSIL/AgentTesla.OI!MTB also known as:

Elasticmalicious (high confidence)
DrWebTrojan.PackedNET.816
McAfeeArtemis!5959B93C1292
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
APEXMalicious
KasperskyUDS:Trojan-PSW.MSIL.Agensla.gen
AlibabaTrojan:MSIL/AgentTesla.38c892a6
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.5959b93c1292430a
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:MSIL/AgentTesla.OI!MTB
TrendMicro-HouseCallTROJ_GEN.F0D1C00FE21
IkarusTrojan.MSIL.HackTool
FortinetMSIL/Kryptik.AAVS!tr
Paloaltogeneric.ml

How to remove Trojan:MSIL/AgentTesla.OI!MTB?

Trojan:MSIL/AgentTesla.OI!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment