Trojan

How to remove “Trojan:MSIL/TeslaCrypt.VN!MTB”?

Malware Removal

The Trojan:MSIL/TeslaCrypt.VN!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/TeslaCrypt.VN!MTB virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan:MSIL/TeslaCrypt.VN!MTB?


File Info:

crc32: C96657FA
md5: 1607a31d7f1a496ec036cfda6b39fec4
name: upload_file
sha1: a5ff3f395db8dccebab85a14eef5ddb9897c60e8
sha256: 76d8f7539bba2cd5acd833f384ad0fb2191ce3553b65416de53869461622b177
sha512: 8fa8c276ebd5f97977f95f110ac894ffec221fb46722c492e2b8e858632e168e7c52677ea1c155e2b0d9b66aa63f5764b1da6d6477f5e4e1e6a87a36a5df978a
ssdeep: 6144:i25Web7i6Axv1T5Ifc8VnueCOOm/NhWp3D5VYlx/NpD6XLmUovu5xtySDWEHP:5bK6A35IDRu2Om/aq5NYXLmUovu
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: all rights reserved 1997
Assembly Version: 7.0.123.4
InternalName: IvqVAyBaTF.exe
FileVersion: 7.0.0.0
CompanyName: Lx2019amore xe8 cieco
LegalTrademarks: Lx2019amore xe8 cieco
Comments: Belle parole
ProductName: Dio tx2019aiuta
ProductVersion: 7.0.0.0
FileDescription: Dio tx2019aiuta
OriginalFilename: IvqVAyBaTF.exe

Trojan:MSIL/TeslaCrypt.VN!MTB also known as:

FireEyeGeneric.mg.1607a31d7f1a496e
McAfeeArtemis!1607A31D7F1A
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0056ba581 )
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:RATX-gen [Trj]
GDataWin32.Backdoor.Remcos.KUJ02B
KasperskyHEUR:Trojan.MSIL.Injects.gen
AlibabaTrojan:Win32/starter.ali1000139
AegisLabTrojan.MSIL.Injects.4!c
Endgamemalicious (high confidence)
SophosMal/Generic-S
TrendMicroTROJ_GEN.R03BC0DH120
SentinelOneDFI – Malicious PE
MicrosoftTrojan:MSIL/TeslaCrypt.VN!MTB
ZoneAlarmHEUR:Trojan.MSIL.Injects.gen
AhnLab-V3Trojan/Win32.AgentTesla.R346515
VBA32CIL.HeapOverride.Heur
MalwarebytesTrojan.MalPack.PNG.Generic
ESET-NOD32a variant of MSIL/Kryptik.XDT
TrendMicro-HouseCallTROJ_GEN.R03BC0DH120
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
IkarusWin32.SuspectCrc
BitDefenderThetaGen:NN.ZemsilF.34144.ym0@aGO4cC
AVGWin32:RATX-gen [Trj]
Cybereasonmalicious.95db8d
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM03.0.E943.Malware.Gen

How to remove Trojan:MSIL/TeslaCrypt.VN!MTB?

Trojan:MSIL/TeslaCrypt.VN!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment