Spy Trojan

TrojanSpy:MSIL/AgentTesla.AT!MTB removal guide

Malware Removal

The TrojanSpy:MSIL/AgentTesla.AT!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:MSIL/AgentTesla.AT!MTB virus can do?

  • Performs some HTTP requests
  • Network activity detected but not expressed in API logs

How to determine TrojanSpy:MSIL/AgentTesla.AT!MTB?


File Info:

crc32: 9A7B1063
md5: 93d2a7e61ae3f01207824fe035963451
name: upload_file
sha1: 1c45be41eca6ac772546ef119f45fb67674d06f0
sha256: e4cead9465c1e03aaad13e02e38b491675e8d13caa6ba290e979882fa16accec
sha512: 4f7d55f03d44a9ae58d8f9970085c2f777355222637583bf1da22ac936e9d06dad2feb6d68b478058a11b677b9352c99cd8b213a0661a70bb5d00002fbb66b6b
ssdeep: 6144:Cu2Mo+Efv8I1zd5wIJH5y5bvDweMjYleUXnf/0Dl9Ory255:7Het1p5ZXylIAeAKl9iy
type: # UDF filesystem data (version 1.5) ''

Version Info:

0: [No Data]

TrojanSpy:MSIL/AgentTesla.AT!MTB also known as:

TrendMicroPossible_GENISO-6
BitDefenderThetaGen:NN.ZemsilF.34590.ym0@aWVYUkj
CyrenW32/Faker.F.gen!Eldorado
SymantecTrojan.Gen.NPE
ESET-NOD32a variant of MSIL/Kryptik.YLH
TrendMicro-HouseCallPossible_GENISO-6
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
BitDefenderTrojan.GenericKD.44328249
TencentMsil.Trojan-qqpass.Qqrob.Hupe
EmsisoftTrojan.GenericKD.44328249 (B)
F-SecureTrojan.TR/Dropper.MSIL.zfjyq
DrWebBackDoor.SpyBotNET.25
InvinceaMal/Generic-S
McAfee-GW-EditionPWS-FCQR!06E4BC76D9FB
FireEyeTrojan.GenericKD.44328249
GDataArchive.Trojan.Agent.UO36PA
AviraTR/Dropper.MSIL.zfjyq
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen
MicrosoftTrojanSpy:MSIL/AgentTesla.AT!MTB
CynetMalicious (score: 85)
McAfeePWS-FCQR!06E4BC76D9FB
MAXmalware (ai score=81)
IkarusTrojan.MSIL.Crypt
FortinetMSIL/Kryptik.YKZ!tr
AVGWin32:MalwareX-gen [Trj]

How to remove TrojanSpy:MSIL/AgentTesla.AT!MTB?

TrojanSpy:MSIL/AgentTesla.AT!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment