The TrojanSpy:MSIL/AgentTesla.R!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
What TrojanSpy:MSIL/AgentTesla.R!MTB virus can do?
File Info:
crc32: 9AA9D47Amd5: 13385e551c73b3e85f227ded0a8b5bf7name: 13385E551C73B3E85F227DED0A8B5BF7.mlwsha1: 191896a4b9b0ab04affb0a99817d5a840f91f71asha256: 4d7785dcd99beca572613788bc8b0713ddda6da0c8df321b1402bc38e6880f88sha512: 6c82458631b3852ec8ffc8a33efa28ec5f7690f6bf5fa7f09fca0ce6427e60c71e5949cb7f516e1d2b434ba37caa9838e3fac1ec96a4d9a45263734421a82b2essdeep: 384:Vhi9COxO7C6gFWWax1dpXp/qo5p91ewfmzuZGmpALBFBCpCheQp:P6Fb6+WWax1dpXpxp9lpAdLheWtype: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS WindowsVersion Info:
LegalCopyright: Copyright 2022 xa9 YdtZoSxD. All rights reserved.Assembly Version: 1.2.3.1InternalName: PhYLxcEV.exeFileVersion: 8.1.6.6CompanyName: HAEbhExELegalTrademarks: XUfopSklComments: ClpsFnjbProductName: PhYLxcEVProductVersion: 1.2.3.1FileDescription: YBAIuSrKOriginalFilename: PhYLxcEV.exeTranslation: 0x0409 0x0514
Elastic | malicious (high confidence) |
MicroWorld-eScan | Gen:Variant.MSILHeracles.13795 |
FireEye | Gen:Variant.MSILHeracles.13795 |
McAfee | RDN/Formbook |
Cylance | Unsafe |
AegisLab | Trojan.MSIL.Noon.l!c |
Sangfor | Trojan.DOC.Obfuse.TB!MTB |
K7AntiVirus | Trojan ( 005784391 ) |
BitDefender | Gen:Variant.MSILHeracles.13795 |
BitDefenderTheta | Gen:NN.ZemsilCO.34590.bm1@aWIYnYii |
Cyren | W32/MSIL_Kryptik.DGL.gen!Eldorado |
Symantec | ML.Attribute.HighConfidence |
APEX | Malicious |
Avast | Win32:DangerousSig [Trj] |
Kaspersky | HEUR:Trojan-Spy.MSIL.Noon.gen |
Alibaba | TrojanSpy:MSIL/AgentTesla.a45afd84 |
Ad-Aware | Gen:Variant.MSILHeracles.13795 |
Emsisoft | Gen:Variant.MSILHeracles.13795 (B) |
F-Secure | Trojan.TR/Dldr.Agent.ojmiy |
DrWeb | Trojan.Siggen12.3176 |
TrendMicro | TrojanSpy.MSIL.NOON.THBBCBA |
McAfee-GW-Edition | Artemis!Trojan |
Sophos | Mal/Generic-S |
Avira | TR/Dldr.Agent.ojmiy |
Kingsoft | Win32.Heur.KVM019.a.(kcloud) |
Microsoft | TrojanSpy:MSIL/AgentTesla.R!MTB |
Arcabit | Trojan.Bulz.D5A08F |
ZoneAlarm | HEUR:Trojan-Spy.MSIL.Noon.gen |
GData | Gen:Variant.MSILHeracles.13795 |
Cynet | Malicious (score: 100) |
AhnLab-V3 | Malware/Win32.RL_Generic.C4345149 |
ALYac | Gen:Variant.Bulz.368783 |
MAX | malware (ai score=83) |
Malwarebytes | Trojan.FakeSig.Generic |
Panda | Trj/CI.A |
ESET-NOD32 | a variant of MSIL/TrojanDownloader.Agent.HLE |
TrendMicro-HouseCall | TrojanSpy.MSIL.NOON.THBBCBA |
Rising | Downloader.Agent!1.D296 (CLOUD) |
Ikarus | Trojan.MSIL.Crypt |
Fortinet | MSIL/Kryptik.ZTE!tr |
AVG | Win32:DangerousSig [Trj] |
Paloalto | generic.ml |
Qihoo-360 | Win32/TrojanSpy.Noon.HgIASPkA |
The Adware.Hotbar.1 is considered dangerous by lots of security experts. When this infection is active,…
The Barys.456554 is considered dangerous by lots of security experts. When this infection is active,…
The Midie.66060 is considered dangerous by lots of security experts. When this infection is active,…
The Symmi.6017 (B) is considered dangerous by lots of security experts. When this infection is…
The Zusy.540971 is considered dangerous by lots of security experts. When this infection is active,…
The Win32:VB-VBS [Wrm] is considered dangerous by lots of security experts. When this infection is…