Trojan

Should I remove “Trojan:MSIL/AgentTesla.SMRF”?

Malware Removal

The Trojan:MSIL/AgentTesla.SMRF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/AgentTesla.SMRF virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Trojan:MSIL/AgentTesla.SMRF?


File Info:

name: 576A8CE2C017CAD4195E.mlw
path: /opt/CAPEv2/storage/binaries/d032dc35631ad16736f86fbea7433cb121b773761b557c9acd3d21c71a8ee397
crc32: 63E70692
md5: 576a8ce2c017cad4195e46dd56e21160
sha1: 839e9659ed63fbd5ef29b5dfe65c6a6da4f72b71
sha256: d032dc35631ad16736f86fbea7433cb121b773761b557c9acd3d21c71a8ee397
sha512: 70277dbed9be059f3f8e2e8d999fac0744199f2390c6d7e9242abb9151ca0284df3d87d94fcbd0bb16e55c142ca03adbf9872f068d1fd637d44c38b919366c8e
ssdeep: 6144:5MMYkiMDqNHeEmNQEwjI0mpZ+efersPrQ:OMYkiMDy+Em+EwjhmpZ+edPr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10324C55BB67B99F1C1184B36ECCBD14043A5D792FB33C61A754D23E21A0F3AB894294B
sha3_384: b6804ac678c9fa41b1b51db91f227460bc38c94e38d83fc59417dc34c161f38d4503aff13cced7bf56e6e6a52bd00932
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-08-23 00:27:27

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 1.0.0.0
InternalName: Azyikusohht orgin.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: Azyikusohht orgin.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/AgentTesla.SMRF also known as:

BkavW32.AIDetectMalware.CS
Elasticmalicious (high confidence)
DrWebTrojan.Siggen21.20968
MicroWorld-eScanGen:Variant.Lazy.380324
FireEyeGen:Variant.Lazy.380324
ALYacGen:Variant.Lazy.380324
Cylanceunsafe
ZillyaTrojan.Blocker.Win32.166366
SangforDownloader.Msil.Blocker.Vbck
CrowdStrikewin/malicious_confidence_100% (W)
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderThetaGen:NN.ZemsilCO.36802.nm0@aqAlX6e
VirITTrojan.Win32.Genus.SXZ
SymantecTrojan.Gen.2
tehtrisGeneric.Malware
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.POQ
APEXMalicious
TrendMicro-HouseCallTrojan.MSIL.SERAPH.USPAXHN23
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan-Ransom.MSIL.Blocker.gen
BitDefenderGen:Variant.Lazy.380324
NANO-AntivirusTrojan.Win32.Ransom.jyxpsf
RisingRansom.Blocker!8.12A (CLOUD)
EmsisoftGen:Variant.Lazy.380324 (B)
F-SecureHeuristic.HEUR/AGEN.1367580
VIPREGen:Variant.Lazy.380324
TrendMicroTrojan.MSIL.SERAPH.USPAXHN23
SophosMal/Generic-S
IkarusTrojan-Downloader.MSIL.Agent
MAXmalware (ai score=83)
GoogleDetected
AviraHEUR/AGEN.1367580
VaristW32/MSIL_Troj.CTY.gen!Eldorado
Antiy-AVLTrojan[Downloader]/MSIL.Seraph
Kingsoftmalware.kb.c.979
MicrosoftTrojan:MSIL/AgentTesla.SMRF
XcitiumMalware@#2zpp75c4cgzl4
ArcabitTrojan.Lazy.D5CDA4
ZoneAlarmHEUR:Trojan-Ransom.MSIL.Blocker.gen
GDataGen:Variant.Lazy.380324
AhnLab-V3Malware/Win.AGEN.C5475251
McAfeeTrojan-FVJV!576A8CE2C017
VBA32TScope.Trojan.MSIL
MalwarebytesTrojan.Downloader
PandaTrj/Chgt.AD
ZonerTrojan.Win32.160742
TencentMalware.Win32.Gencirc.13ed0541
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.73689294.susgen
FortinetMSIL/Agent.POQ!tr.dldr
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudMalware

How to remove Trojan:MSIL/AgentTesla.SMRF?

Trojan:MSIL/AgentTesla.SMRF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment