Trojan

Trojan:MSIL/Formbook.MAAV!MTB removal instruction

Malware Removal

The Trojan:MSIL/Formbook.MAAV!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Formbook.MAAV!MTB virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Trojan:MSIL/Formbook.MAAV!MTB?


File Info:

name: 2274C9C3E5D1BA01782B.mlw
path: /opt/CAPEv2/storage/binaries/f4285d141c10f2c43bfc22e3024a5dc7b807fee5ff1f7d75e3e9391045598272
crc32: E0B46292
md5: 2274c9c3e5d1ba01782bef70ee261534
sha1: 8d96a28fdd4d9ca0c39d69b0f598db46eb3d27a1
sha256: f4285d141c10f2c43bfc22e3024a5dc7b807fee5ff1f7d75e3e9391045598272
sha512: a64dff92ed75b2473dc4a7912e4dca8f046f0a8a6518b63bfd0be5249106b02b1d6ec282538bafa363e7c19170c253bf130d60e009b76704f737e66871afae46
ssdeep: 6144:7Lw9M2fTa7sH/l1pJthdP3WrIfi0F1aoCa3lbJDKPGJn2mtM1KpViLsJDsm+pUfJ:Pk3eIqk1arulbJDKeVvViLsJDlb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BDE4C83A15AC052783B692BD6AD0F847FB809CD33A1D8D5F46874FC61522632E5CBD2E
sha3_384: 74738f3026a2d64d3a9198a32bcf347762ecfa6f3d3cc1da5b7cd53103e788f8b56a90ac90ad7a27f9907983eb586043
ep_bytes:
timestamp: 2023-06-08 16:33:30

Version Info:

0: [No Data]

Trojan:MSIL/Formbook.MAAV!MTB also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.GenericKDZ.100381
MalwarebytesMalware.AI.4073659602
VIPRETrojan.GenericKDZ.100381
SangforSuspicious.Win32.Save.a
CyrenW32/MSIL_Kryptik.JLL.gen!Eldorado
BitDefenderTrojan.GenericKDZ.100381
EmsisoftTrojan.GenericKDZ.100381 (B)
DrWebTrojan.Siggen20.61005
FireEyeGeneric.mg.2274c9c3e5d1ba01
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataMSIL.Trojan-Dropper.Agent.GP
GoogleDetected
MAXmalware (ai score=83)
XcitiumHeur.Corrupt.PE@1z141z3
ArcabitTrojan.Generic.D1881D
MicrosoftTrojan:MSIL/Formbook.MAAV!MTB
CynetMalicious (score: 100)
ALYacTrojan.GenericKDZ.100381
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL2:6K1czb2E4xQ7Na73Mc0Rag)
IkarusTrojan.MSIL.Inject
FortinetMSIL/Stealer.36680!tr
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan:MSIL/Formbook.MAAV!MTB?

Trojan:MSIL/Formbook.MAAV!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment