Spy Trojan

TrojanSpy:MSIL/SmallAgent.SBR!MSR (file analysis)

Malware Removal

The TrojanSpy:MSIL/SmallAgent.SBR!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:MSIL/SmallAgent.SBR!MSR virus can do?

  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family

How to determine TrojanSpy:MSIL/SmallAgent.SBR!MSR?


File Info:

name: 6455E505FABC32982D74.mlw
path: /opt/CAPEv2/storage/binaries/89def734e0ad2cdefc7148652ab4cc5796f7fde8d288a4e69cb075a2b7514dfc
crc32: 7149028F
md5: 6455e505fabc32982d74592f2565a10a
sha1: 4e0d4b4752b1b9d31e9e2d990306d4139bccd16a
sha256: 89def734e0ad2cdefc7148652ab4cc5796f7fde8d288a4e69cb075a2b7514dfc
sha512: 322ff3eca856732f3019c1403724d3fad4faf8b607712c83f3a0246411882d310bc94fcfe24adb6ce35d1c00b3d8d1b35d531473779207fdf2bcf330b6538752
ssdeep: 96:K2zsGnbnK4Mm/oPj9aPVeW8byZZ3YU93VyWCYdwXzgpamQoPk+PuA/zNt:KMsG9MuIsdeMZZ3193VnjdwXze3fdp
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C012F724B788D271DDBB1B71ECB357404670E7800467D99F57C8891769F3F289A926F0
sha3_384: 732a52b9c17cf18cbd4b5b44566f6fa1012b2b3bb121d5e2cd855c312770fcbd5c74a5a3f9d621b27d803eedc7c63045
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-02-10 00:01:21

Version Info:

Translation: 0x0000 0x04b0
Comments: AtILoBBEEJ
CompanyName: CxyNdFxKna
FileDescription: ayguaJWdbmUYWOiAu
FileVersion: 1.0.0.0
InternalName: Hairlines.exe
LegalCopyright: sFMacnGnQQQuYDSkHCU
LegalTrademarks: rMFIVGZOBbAIg
OriginalFilename: Hairlines.exe
ProductName: rgIBIJrEtbsmVEVJf
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

TrojanSpy:MSIL/SmallAgent.SBR!MSR also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.MSIL.Agent.4!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.72562
SkyhighBehavesLike.Win32.Generic.zt
McAfeeGenericRXNK-BV!6455E505FABC
Cylanceunsafe
ZillyaTrojan.Agent.Win32.1791325
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00576c111 )
AlibabaTrojan:Win32/SmallAgent.3b3
K7GWTrojan ( 00576c111 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Generic.D11B72
BitDefenderThetaGen:NN.ZemsilF.36680.am0@aigEMwj
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Agent.TZL
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Msilkrypt-9839010-0
KasperskyHEUR:Trojan.MSIL.Agent.gen
BitDefenderTrojan.GenericKDZ.72562
SUPERAntiSpywareBackdoor.BlackSpider/Variant
AvastWin32:MalwareX-gen [Trj]
TencentTrojan.Win32.Agent.yhq
SophosTroj/MSIL-PNC
F-SecureHeuristic.HEUR/AGEN.1306570
DrWebTrojan.DownLoader36.36404
VIPRETrojan.GenericKDZ.72562
TrendMicroTrojan.MSIL.USICE.SMJCDP2
EmsisoftTrojan.GenericKDZ.72562 (B)
IkarusTrojan-Downloader.MSIL.Agent
VaristW32/MSIL_Troj.AHV.gen!Eldorado
AviraHEUR/AGEN.1306570
Antiy-AVLTrojan/MSIL.Agent.tzl
MicrosoftTrojanSpy:MSIL/SmallAgent.SBR!MSR
ZoneAlarmHEUR:Trojan.MSIL.Agent.gen
GDataMSIL.Trojan.Agent.AXW
GoogleDetected
AhnLab-V3Malware/Win.Generic.R375015
VBA32Trojan.MSIL.Krypt
MalwarebytesGeneric.Malware/Suspicious
RisingTrojan.Agent!1.D274 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/SmallAgent.A!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove TrojanSpy:MSIL/SmallAgent.SBR!MSR?

TrojanSpy:MSIL/SmallAgent.SBR!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment