Trojan

Trojan:MSIL/AsyncRAT!MSR removal tips

Malware Removal

The Trojan:MSIL/AsyncRAT!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/AsyncRAT!MSR virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • .NET file is packed/obfuscated with SmartAssembly
  • Authenticode signature is invalid

How to determine Trojan:MSIL/AsyncRAT!MSR?


File Info:

name: 76CDEFA61C12408EB240.mlw
path: /opt/CAPEv2/storage/binaries/b0f4a61d2823d4ca1737de9df31c90446a7c110eb574035dec8e9650bdf758ae
crc32: 52902711
md5: 76cdefa61c12408eb2406a3f1828b748
sha1: 421c37fd555474f34b9611eeb586390595af27f8
sha256: b0f4a61d2823d4ca1737de9df31c90446a7c110eb574035dec8e9650bdf758ae
sha512: 72a621536e3817c27c35408c3e1e6baa565e4999b2e2e06488aebd9c32507aa4251eea0e3bea30035a92a48733921ceea78d453c7861f0e4d82eb529d16a43f0
ssdeep: 1536:ghCHu3Bu22yd2J8XzBURDXXMaShUAbgM37lVd:UCHb2N9U1MaShUAbgM33d
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T112735B05479D9712C3EE06BB50E3A7114770CEA77B4BEB8E38C476684E31BEB464258B
sha3_384: 4d2d554af43c77fcc143f12d8634fd957ce4c8763f08ef5a792ce54437c451a1f4fee803d6088cd4187d2f30c0a14526
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-09-01 02:02:09

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 1.0.0.0
InternalName: Stub.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: Stub.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/AsyncRAT!MSR also known as:

BkavW32.WoiKymdeX.Trojan
LionicTrojan.MSIL.Crysan.m!c
CynetMalicious (score: 100)
ALYacIL:Trojan.MSILZilla.18771
CylanceUnsafe
ZillyaTrojan.Agent.Win32.3004505
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00575a901 )
AlibabaBackdoor:MSIL/Crysan.b8ded9ab
K7GWTrojan ( 00575a901 )
Cybereasonmalicious.61c124
BitDefenderThetaGen:NN.ZemsilF.34784.em0@a83BkQk
CyrenW32/ABRisk.TVDC-3524
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Agent.DEF
APEXMalicious
ClamAVWin.Packed.AsyncRAT-9861056-1
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
BitDefenderIL:Trojan.MSILZilla.18771
NANO-AntivirusTrojan.Win32.Crysan.jsvktg
MicroWorld-eScanIL:Trojan.MSILZilla.18771
TencentMsil.Backdoor.Crysan.Yolw
Ad-AwareIL:Trojan.MSILZilla.18771
EmsisoftIL:Trojan.MSILZilla.18771 (B)
DrWebBackDoor.AsyncRATNET.2
VIPREIL:Trojan.MSILZilla.18771
TrendMicroBackdoor.Win32.ASYNCRAT.YXCILZ
McAfee-GW-EditionRDN/Generic BackDoor
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.76cdefa61c12408e
SophosMal/Generic-S
IkarusTrojan.MSIL.Agent
JiangminBackdoor.MSIL.fxsv
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.6DA3
MicrosoftTrojan:MSIL/AsyncRAT!MSR
ArcabitIL:Trojan.MSILZilla.D4953
ZoneAlarmHEUR:Backdoor.MSIL.Crysan.gen
GDataIL:Trojan.MSILZilla.18771
GoogleDetected
AhnLab-V3Trojan/Win32.Bladabindi.C4017160
Acronissuspicious
McAfeeRDN/Generic BackDoor
MAXmalware (ai score=86)
MalwarebytesBackdoor.AsyncRAT
PandaTrj/GdSda.A
TrendMicro-HouseCallBackdoor.Win32.ASYNCRAT.YXCILZ
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:VHohHkbfc3YPwIVBydnpGQ)
YandexTrojan.Agent!ycEN7/g3O3M
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.74478283.susgen
FortinetPossibleThreat
AVGWin32:KeyloggerX-gen [Trj]
AvastWin32:KeyloggerX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:MSIL/AsyncRAT!MSR?

Trojan:MSIL/AsyncRAT!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment