Spy Trojan

About “TrojanSpy:MSIL/SmallAgent.SBR!MSR” infection

Malware Removal

The TrojanSpy:MSIL/SmallAgent.SBR!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:MSIL/SmallAgent.SBR!MSR virus can do?

  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family

How to determine TrojanSpy:MSIL/SmallAgent.SBR!MSR?


File Info:

name: 80526FFBC8BD85138718.mlw
path: /opt/CAPEv2/storage/binaries/6b23628b0723305cfdccddb8d286dcb0c12480092ea75948ad6468c1865f1d0e
crc32: A936C485
md5: 80526ffbc8bd8513871889178bcd6d14
sha1: 29a6139a0eaf184c110eb086a8bb30a02994cabc
sha256: 6b23628b0723305cfdccddb8d286dcb0c12480092ea75948ad6468c1865f1d0e
sha512: 00eb9e37f91af8a059f1902b00cedd0fc61b2a865706e46416fa5fe7e0ca9d95a3ca46f4a4e96e49f983e5af4fa81f29b366a47c5b9b077d12cbb435f3678a2c
ssdeep: 192:GMsmzHNQlwteMZZ3L93VnjdwXzZ38te13G:PHdteMFFnhwXdMte1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T118120918ABC4D671DDBB0B30ECB367405A30E75000A7DA9F6AC945176DE7F091A923F0
sha3_384: 687e5d10139007c46e40ba5f626fa41ec2ef34e5d3b9dd134c9228862c6f9f677bb527e1dc3f1ac79568f3f60b9e0cbe
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-02-24 06:14:13

Version Info:

Translation: 0x0000 0x04b0
Comments: bcOgwDFXqOsb
CompanyName: SGAuSySvYtNX
FileDescription: eDPYDtVeXUxYlkKEud
FileVersion: 1.0.0.0
InternalName: Jackeen.exe
LegalCopyright: mJWGQeJIKvGP
LegalTrademarks: golohTicrV
OriginalFilename: Jackeen.exe
ProductName: tGHfYjwBOWSVxu
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

TrojanSpy:MSIL/SmallAgent.SBR!MSR also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.MSIL.Agent.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.73325
SkyhighBehavesLike.Win32.Generic.zm
McAfeeGenericRXNK-BV!80526FFBC8BD
Cylanceunsafe
VIPRETrojan.GenericKDZ.73325
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00576c111 )
AlibabaTrojan:Win32/SmallAgent.3b3
K7GWTrojan ( 00576c111 )
ArcabitTrojan.Generic.D11E6D
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of MSIL/Agent.TZL
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Msilkrypt-9839010-0
KasperskyHEUR:Trojan.MSIL.Agent.gen
BitDefenderTrojan.GenericKDZ.73325
SUPERAntiSpywareBackdoor.BlackSpider/Variant
AvastWin32:MalwareX-gen [Trj]
TencentTrojan.Win32.Agent.yhq
EmsisoftTrojan.GenericKDZ.73325 (B)
F-SecureHeuristic.HEUR/AGEN.1308474
DrWebTrojan.DownLoader36.36404
ZillyaTrojan.AgentGen.Win32.82
TrendMicroTrojan.MSIL.USICE.SMJCDP2
SophosTroj/MSIL-PNC
IkarusTrojan-Downloader.MSIL.Agent
JiangminTrojan.MSIL.vgwq
VaristW32/MSIL_Troj.AHV.gen!Eldorado
AviraHEUR/AGEN.1308474
Antiy-AVLTrojan/MSIL.Agent.tzl
Kingsoftmalware.kb.c.819
MicrosoftTrojanSpy:MSIL/SmallAgent.SBR!MSR
ZoneAlarmHEUR:Trojan.MSIL.Agent.gen
GDataMSIL.Trojan.Agent.AXW
GoogleDetected
AhnLab-V3Malware/Win.Generic.R417244
BitDefenderThetaGen:NN.ZemsilF.36680.am0@aicMM7h
VBA32Trojan.MSIL.Krypt
MalwarebytesGeneric.Malware/Suspicious
RisingTrojan.Agent!1.D274 (CLASSIC)
YandexTrojan.Agent!9JKdrb5G53k
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/SmallAgent.A!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove TrojanSpy:MSIL/SmallAgent.SBR!MSR?

TrojanSpy:MSIL/SmallAgent.SBR!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment