Trojan

Trojan:MSIL/AsyncRAT.K!MTB removal

Malware Removal

The Trojan:MSIL/AsyncRAT.K!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/AsyncRAT.K!MTB virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:MSIL/AsyncRAT.K!MTB?


File Info:

name: D26A4A649E4067D625EF.mlw
path: /opt/CAPEv2/storage/binaries/1477ab68cb79b3db137fbb67dfadd9261d96e0884b0f443e9b36e38f7a4b7f67
crc32: D72BE016
md5: d26a4a649e4067d625ef150b6d86afdc
sha1: 9ec161bb053c84c13879558d5fdccd3d07724df9
sha256: 1477ab68cb79b3db137fbb67dfadd9261d96e0884b0f443e9b36e38f7a4b7f67
sha512: 3571683afb7761ef13d901d014c1ddbcb8dfb68cbe5f754c1d432a133cbbade48f63e14dc1875e5e57aa5de18dd083c3c1c935daed60018518b9ed9635aca1c1
ssdeep: 1536:GieyKgAngds6UXGLYWrq2fIws0cXESl8QMkq+Wt0Tcl5sL3c9Rg7:DeyKgLds6UXoYWrDfIws0c5Lqjt0Tsiv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B983470DB7FB4EB1CBEC8F364DE30615163E9A4B05229E5F10DE1BB15B4A2428956CF2
sha3_384: 0495f4c24bc449889888deb760ada84eaf81c2c0f19c5923642f0b6614ba4248105dfd2584b4cf904ec0cedef00b14a8
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-11-25 17:43:45

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 1.0.0.0
InternalName: Encrypted2.exe
LegalCopyright:
OriginalFilename: Encrypted2.exe
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/AsyncRAT.K!MTB also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Crysan.m!c
AVGWin32:InjectorX-gen [Trj]
Elasticmalicious (high confidence)
DrWebTrojan.InjectNET.46
MicroWorld-eScanIL:Trojan.MSILZilla.36194
FireEyeGeneric.mg.d26a4a649e4067d6
SkyhighBehavesLike.Win32.Generic.mc
McAfeeArtemis!D26A4A649E40
MalwarebytesTrojan.Crypt.MSIL
ZillyaTrojan.Injector.Win32.1726361
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004df5941 )
AlibabaBackdoor:MSIL/AsyncRAT.dd4a2dde
K7GWTrojan ( 004df5941 )
Cybereasonmalicious.49e406
BitDefenderThetaGen:NN.ZemsilF.36802.fm0@aKoymIg
VirITTrojan.Win32.MSIL_Heur.A
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Injector.OBE
APEXMalicious
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
BitDefenderIL:Trojan.MSILZilla.36194
AvastWin32:InjectorX-gen [Trj]
TencentMalware.Win32.Gencirc.1401acc3
EmsisoftIL:Trojan.MSILZilla.36194 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPREIL:Trojan.MSILZilla.36194
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.MSIL.ghyo
VaristW32/MSIL_Agent.BUD.gen!Eldorado
AviraTR/Dropper.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/MSIL.Injector
Kingsoftmalware.kb.c.1000
MicrosoftTrojan:MSIL/AsyncRAT.K!MTB
ArcabitIL:Trojan.MSILZilla.D8D62
ZoneAlarmHEUR:Backdoor.MSIL.Crysan.gen
GDataIL:Trojan.MSILZilla.36194
GoogleDetected
AhnLab-V3Trojan/Win.MSILKrypt02.C5446597
ALYacIL:Trojan.MSILZilla.36194
Cylanceunsafe
PandaTrj/GdSda.A
RisingBackdoor.Crysan!8.10ECA (CLOUD)
IkarusTrojan.MSIL.Injector
MaxSecureTrojan.Malware.74418669.susgen
FortinetPossibleThreat.MU
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:MSIL/AsyncRAT.K!MTB?

Trojan:MSIL/AsyncRAT.K!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment