Trojan

UDS:Trojan.MSIL.Tpyn removal

Malware Removal

The UDS:Trojan.MSIL.Tpyn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan.MSIL.Tpyn virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine UDS:Trojan.MSIL.Tpyn?


File Info:

name: D5F5E1E31FAEC272976D.mlw
path: /opt/CAPEv2/storage/binaries/08df1d7e2fb4a0ec9d2a15069f54b357275c03049f9a4ff98440f3159c077649
crc32: FE0425DA
md5: d5f5e1e31faec272976d5e2bf7a2b08e
sha1: cd5c06e62c6d43d8398d8f08541d39accb71753f
sha256: 08df1d7e2fb4a0ec9d2a15069f54b357275c03049f9a4ff98440f3159c077649
sha512: c7c2918fd578cc9b22bc6b3e398a3f6101fa0a8c8dcb56f2cbf209f640b624edfa463aba9a816455b8e1251746d71fe6737641feb1deb2f8d9d517d420d839a5
ssdeep: 98304:lAI+ZvGln4krExvEP1iXtG5rfLZfMlfh2+OklX5Tsl4+0b:2thGl4Bvnw5rfLmlTTsEb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19A2633B6A386457FC16276F3A445D2B1B638FF010E2406CEB5EEBA685E3B1179E1031D
sha3_384: 3acfab992deb27d5a2a58743a85d0d934d761b455eb445fdd893b739374b15ca510407206681b8067be5760d13b629d2
ep_bytes: 558bec83c4f0b888534200e824f2fdff
timestamp: 1992-06-19 22:22:17

Version Info:

Comments:
CompanyName: Need For Speed Most Wanted
FileDescription: NFS13 1.00 Installation
FileVersion: 1.00
LegalCopyright: Need For Speed Most Wanted
Translation: 0x0409 0x04e4

UDS:Trojan.MSIL.Tpyn also known as:

BkavW32.AIDetect.malware2
LionicTrojan.MSIL.Disfa.4!c
McAfeeArtemis!D5F5E1E31FAE
CylanceUnsafe
SangforBackdoor.Win32.Bladabindi.8
K7AntiVirusTrojan ( 004ca3531 )
AlibabaBackdoor:MSIL/Bladabindi.f37c4b20
K7GWTrojan ( 004ca3531 )
CyrenW32/MSIL_Troj.UX.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of MSIL/Injector.CAI
APEXMalicious
KasperskyUDS:Trojan.MSIL.Tpyn.gen
NANO-AntivirusTrojan.Win32.Disfa.cgpcol
AvastMSIL:GenMalicious-H [Trj]
TencentMsil.Backdoor.Msil.Wtxd
SophosGeneric ML PUA (PUA)
ComodoMalware@#37y3vxed4y4f
DrWebWin32.HLLW.Autoruner.25074
McAfee-GW-EditionBehavesLike.Win32.AdwareIMonster.rc
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/MSIL.fhid
AviraHEUR/AGEN.1221650
MicrosoftBackdoor:MSIL/Bladabindi
CynetMalicious (score: 99)
MalwarebytesAdware.IStartSurf
YandexTrojan.Tpyn!BiPGJfr7XDQ
IkarusTrojan.VBS.Crypt
FortinetW32/Disfa.CEIC!tr
AVGMSIL:GenMalicious-H [Trj]
PandaTrj/CI.A

How to remove UDS:Trojan.MSIL.Tpyn?

UDS:Trojan.MSIL.Tpyn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment