Threat Database Trojans Trojan.MSIL.Noon.EB

Trojan.MSIL.Noon.EB

By CagedTech in Trojans

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 1
First Seen: December 8, 2022
Last Seen: February 4, 2026
OS(es) Affected: Windows

The detection of Trojan.MSIL.Noon.EB indicates that your system has been compromised by a potentially malicious program. This type of threat is generally categorized as a Trojan, which is a broad term for malware that disguises itself as legitimate software. The presence of Trojan.MSIL.Noon.EB on your system suggests that you should take immediate action to protect your personal data and prevent further damage.

What Is Trojan.MSIL.Noon.EB?

Trojan.MSIL.Noon.EB is a type of malware that can infect your system through various means, such as downloading infected software, opening malicious email attachments, or visiting compromised websites. Once installed, it can perform a range of malicious activities, including stealing sensitive information, installing additional malware, or providing unauthorized access to your system. The name Trojan.MSIL.Noon.EB does not directly indicate a specific malware family, but rather serves as a unique identifier for this particular threat.

How Trojan.MSIL.Noon.EB Operates

Malware like Trojan.MSIL.Noon.EB typically operates by exploiting vulnerabilities in your system or applications. It may use social engineering tactics to trick you into installing it, or it may be installed automatically when you visit a compromised website or download infected software. Once installed, it can communicate with its creators or other malicious programs to receive instructions or transmit stolen data. The exact operations of Trojan.MSIL.Noon.EB can vary, but its primary goal is to compromise your system and exploit it for malicious purposes.

Symptoms of Infection

Systems infected with Trojan.MSIL.Noon.EB may exhibit a range of symptoms, including slow performance, frequent crashes, or unexpected behavior. You may also notice unfamiliar programs or icons on your system, or receive alerts from your security software indicating that malicious activity has been detected. In some cases, you may not notice any symptoms at all, which is why regular system scans and monitoring are essential for detecting and removing threats like Trojan.MSIL.Noon.EB.

  • Unexplained changes to your system settings or configuration
  • Appearance of unfamiliar programs or icons
  • Frequent system crashes or errors
  • Slow system performance or responsiveness
  • Unusual network activity or data transmission

How to Remove Trojan.MSIL.Noon.EB

  1. Boot your system in Safe Mode with Networking to prevent the malware from loading and to allow you to download removal tools.
  2. Use a reputable malware removal tool, such as SpyHunter, to perform a full scan of your system and detect any malicious programs or files.
  3. Uninstall any suspicious programs or applications that may be related to the Trojan.MSIL.Noon.EB infection.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings to remove any malicious extensions or add-ons.
  5. Reboot your system and perform another full scan to ensure that all remnants of the malware have been removed.

Conclusion

The detection and removal of Trojan.MSIL.Noon.EB require immediate attention to prevent further damage to your system and protect your sensitive information. By following the steps outlined above and maintaining good system hygiene, you can reduce the risk of infection and keep your system secure. Remember to always be cautious when downloading software or visiting websites, and to keep your security software up to date to detect and remove the latest threats.

Analysis Report

General information

Family Name: Trojan.MSIL.Noon.EB
Signature status: No Signature

Known Samples

MD5: e9a0eadd405183a7b222516f950f8601
SHA1: 3ef1e8db44807f8bc7036e0d020989d876f1c354
SHA256: 4C78BBDF531ACC9BC207974D1ED7A28B281E18CB7F195774741989635F25BAC2
File Size: 499.20 KB, 499200 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is .NET application
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Assembly Version 1.0.0.0
File Description Botanic Black
File Version 1.0.0.0
Internal Name Botanic Black.exe
Legal Copyright Copyright © 2022
Original Filename Botanic Black.exe
Product Name Botanic Black
Product Version 1.0.0.0

File Traits

  • .NET
  • x86

Block Information

Total Blocks: 43
Potentially Malicious Blocks: 4
Whitelisted Blocks: 37
Unknown Blocks: 2

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x ? x x 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • MSIL.BadJoke.XH
  • MSIL.Downloader.WAF
  • MSIL.HackAgent.XD
  • MSIL.Krypt.EEBT
  • MSIL.Perseus.P
Show More
  • MSIL.RunescapeHack.D

Windows API Usage

Category API
User Data Access
  • GetUserDefaultLocaleName
  • GetUserObjectInformation
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation
Keyboard Access
  • GetAsyncKeyState

Related Posts

Trending

Most Viewed

Loading...