Trojan

Trojan:MSIL/AsyncRAT.AI!MTB removal

Malware Removal

The Trojan:MSIL/AsyncRAT.AI!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/AsyncRAT.AI!MTB virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Trojan:MSIL/AsyncRAT.AI!MTB?


File Info:

name: 9FFD7DD540EE571EE92B.mlw
path: /opt/CAPEv2/storage/binaries/e65c8b3de6cc3deaa5d953b93a90df289387c34a785d17143407100b2baa3477
crc32: 1BB181E8
md5: 9ffd7dd540ee571ee92bf5c2653dc51a
sha1: b62bae580771a2f10f36055ea8a00bda4f23e158
sha256: e65c8b3de6cc3deaa5d953b93a90df289387c34a785d17143407100b2baa3477
sha512: e746f4858420aecbe44c031a18529867f7108d2a435773bda7bfa861f28e39afb870c8e25d7fbbd143f9dca5b7367877dbd1e0c75f595c1390ce7b3ae41b581f
ssdeep: 12288:pxo6LMlJqIW1P868wmlA7MByXvkoLCKuk:pxVTIW1+wJ7MByeG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CB250A1192B553BFEA1E4F7CB8C9937C3B560E20C8CBF5DD0188AA455FDB46AAE11348
sha3_384: 4868849066965430409ef144028314cc7798431cb866f3f417d554541a3fa96f06db0e8184a7933e412ebcb7f8638d13
ep_bytes: ff250020400000000000000000000000
timestamp: 2024-03-30 07:41:44

Version Info:

Translation: 0x0000 0x04b0
FileDescription: STAR PROTON
FileVersion: 1.0.0.0
InternalName: STAR PROTON.exe
LegalCopyright: Copyright © 2024
OriginalFilename: STAR PROTON.exe
ProductName: STAR PROTON
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/AsyncRAT.AI!MTB also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Generic.lWsd
AVGMSIL:Agent-CBB [Trj]
MicroWorld-eScanGen:Variant.Strictor.270171
FireEyeGeneric.mg.9ffd7dd540ee571e
SkyhighArtemis!Trojan
ALYacGen:Variant.Strictor.270171
MalwarebytesMalware.AI.1955006540
SangforSuspicious.Win32.Save.a
AlibabaTrojan:MSIL/AsyncRAT.68ea614d
Cybereasonmalicious.540ee5
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Injector.TTT
APEXMalicious
KasperskyHEUR:Trojan.MSIL.APosT.gen
BitDefenderGen:Variant.Strictor.270171
AvastMSIL:Agent-CBB [Trj]
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL2:803TbWYS5Z8XdR2fSDW5/A)
SophosMal/Generic-S
F-SecureTrojan.TR/Dropper.MSIL.Gen
VIPREGen:Variant.Strictor.270171
TrendMicroTROJ_GEN.R014C0DCU24
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Strictor.270171 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.MSIL.Gen
MAXmalware (ai score=80)
Kingsoftmalware.kb.c.1000
MicrosoftTrojan:MSIL/AsyncRAT.AI!MTB
ArcabitTrojan.Strictor.D41F5B
ZoneAlarmHEUR:Trojan.MSIL.APosT.gen
GDataGen:Variant.Strictor.270171
GoogleDetected
McAfeeArtemis!9FFD7DD540EE
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R014C0DCU24
IkarusTrojan.MSIL.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/TTT!tr
BitDefenderThetaGen:NN.ZemsilF.36802.an0@aS4Q49k
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudTrojan:MSIL/Kryptik.JGS

How to remove Trojan:MSIL/AsyncRAT.AI!MTB?

Trojan:MSIL/AsyncRAT.AI!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment