Trojan

Trojan:MSIL/AgentTesla.SSS!MTB malicious file

Malware Removal

The Trojan:MSIL/AgentTesla.SSS!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/AgentTesla.SSS!MTB virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:MSIL/AgentTesla.SSS!MTB?


File Info:

crc32: 96C37AC0
md5: 82ed3412484e676e59e09b3513d9701b
name: 82ED3412484E676E59E09B3513D9701B.mlw
sha1: e60ee50b261042c85e00e6b32d1cb1ce6eb9c16e
sha256: 560616afc82ebdb3ebc4e0e0106bcec9ddbf25ba9d7bb534e2e1990fa1828b9b
sha512: b72935e73f232c3ff277e7546d12cafb9d23eb706fec706bed64f8defb93b9ad7800a5397cfe7eaaa491348d8508ccdc9e06c21c3b0415db4115b17aba163ca9
ssdeep: 384:3sfk1xrHSDBHSpSQSaS3SrOrOxsoaLE9rSVToJo42QGd4qjCvJvCXohF2:QZDdWSQSaS3SyAQAUQW+vJvkohc
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2019
Assembly Version: 1.0.0.0
InternalName: wof.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: wof
ProductVersion: 1.0.0.0
FileDescription: wof
OriginalFilename: wof.exe

Trojan:MSIL/AgentTesla.SSS!MTB also known as:

LionicTrojan.MSIL.Stealer.l!c
Elasticmalicious (high confidence)
CylanceUnsafe
SangforSpyware.MSIL.Stealer.gen
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojan:MSIL/Kryptik.a1f2b005
CyrenW32/MSIL_Kryptik.EHH.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.JIB
APEXMalicious
AvastWin32:DangerousSig [Trj]
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderTrojan.GenericKDZ.79578
MicroWorld-eScanTrojan.GenericKDZ.79578
Ad-AwareTrojan.GenericKDZ.79578
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKDZ.79578
EmsisoftGen:Variant.Cerbu.119451 (B)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:MSIL/AgentTesla.SSS!MTB
GDataTrojan.GenericKDZ.79578
McAfeeArtemis!82ED3412484E
MAXmalware (ai score=84)
IkarusTrojan-Downloader.MSIL.Discord
FortinetMSIL/Agent.JIB!tr.dldr
AVGWin32:DangerousSig [Trj]

How to remove Trojan:MSIL/AgentTesla.SSS!MTB?

Trojan:MSIL/AgentTesla.SSS!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment