Trojan

Trojan:MSIL/FormBookLoader.PKA!MTB (file analysis)

Malware Removal

The Trojan:MSIL/FormBookLoader.PKA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/FormBookLoader.PKA!MTB virus can do?

    How to determine Trojan:MSIL/FormBookLoader.PKA!MTB?

    
    

    File Info:

    crc32: 3D08FB65
    md5: 106aa0f495a1ad60142757b55196efb6
    name: 106AA0F495A1AD60142757B55196EFB6.mlw
    sha1: b3093e462a036ce01af09695e5d46ae1a8151a6d
    sha256: c606b9a9266efd06f8db163bced0cea6e69bcaf88185f29bb364289f7a067eaf
    sha512: 8050a0504bc99e1f35abec702693efe1559bed0dca1c8b4862e101a23a35e1586a4841b91189bc2b4aa42d32ac78abf982774d137ace18f96080e1f590dc3e3c
    ssdeep: 12288:0xxkNTGvv25xiq3sZOxl02P4G0g9CucxmTuE/f/MrZe0AFu2/tagranGspxib5:04NTGRIq2AMfoAFuYtag+Gspx
    type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

    Version Info:

    Translation: 0x0000 0x04b0
    LegalCopyright: Dahlkemper's xa9
    Assembly Version: 65.7.0.0
    InternalName: FileDialogPermissionAccess.exe
    FileVersion: 65.7.0.0
    CompanyName: Dahlkemper's
    LegalTrademarks:
    Comments: Power Transformer
    ProductName: KeyedCollection
    ProductVersion: 65.7.0.0
    FileDescription: KeyedCollection
    OriginalFilename: FileDialogPermissionAccess.exe

    Trojan:MSIL/FormBookLoader.PKA!MTB also known as:

    K7AntiVirusTrojan ( 005796ef1 )
    Elasticmalicious (high confidence)
    DrWebTrojan.PackedNET.594
    CynetMalicious (score: 100)
    ALYacSpyware.AgentTesla
    CylanceUnsafe
    SangforTrojan.Win32.Wacatac.B
    AlibabaTrojanPSW:MSIL/FormBookLoader.1dc1fc19
    K7GWTrojan ( 005796ef1 )
    Cybereasonmalicious.495a1a
    CyrenW32/MSIL_Kryptik.CFF.gen!Eldorado
    ESET-NOD32Win32/PSW.Fareit.L
    APEXMalicious
    AvastWin32:PWSX-gen [Trj]
    KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
    BitDefenderTrojan.GenericKDZ.73641
    MicroWorld-eScanTrojan.GenericKDZ.73641
    Ad-AwareTrojan.GenericKDZ.73641
    SophosMal/Generic-S + Troj/Kryptik-US
    ComodoMalware@#2lr4zz2wsynl1
    McAfee-GW-EditionRDN/GenericC
    FireEyeTrojan.GenericKDZ.73641
    EmsisoftTrojan.GenericKDZ.73641 (B)
    WebrootW32.Trojan.Gen
    AviraTR/AD.LokiBot.gzsby
    KingsoftWin32.PSWTroj.Undef.(kcloud)
    MicrosoftTrojan:MSIL/FormBookLoader.PKA!MTB
    ArcabitTrojan.Generic.D11FA9
    AegisLabTrojan.Multi.Generic.4!c
    GDataMSIL.Trojan.PSE.159DTXM
    AhnLab-V3Trojan/Win32.AgentTesla.R350659
    McAfeeRDN/GenericC
    MAXmalware (ai score=84)
    MalwarebytesMalware.AI.100922700
    PandaTrj/GdSda.A
    TrendMicro-HouseCallTROJ_GEN.R002H09CM21
    RisingTrojan.Kryptik!8.8 (CLOUD)
    IkarusTrojan.MSIL.Inject
    FortinetPossibleThreat
    AVGWin32:PWSX-gen [Trj]
    Paloaltogeneric.ml
    Qihoo-360Win32/Trojan.Generic.GgIASRQA

    How to remove Trojan:MSIL/FormBookLoader.PKA!MTB?

    Trojan:MSIL/FormBookLoader.PKA!MTB removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment