Malware

MSIL/Agent.ADE information

Malware Removal

The MSIL/Agent.ADE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Agent.ADE virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Collects information to fingerprint the system

How to determine MSIL/Agent.ADE?


File Info:

crc32: 1E31DC4B
md5: 4f528f978e73327757ef3a8df0a8e980
name: win10.exe
sha1: 390fa140fbc9089ee8b471beba51f57f4ec0a412
sha256: c77d94324ae105ffbbf5fb6157c28fbc27840bfcf225662198ffa52ea5c1bb3e
sha512: 012b822c843b6c3aa789ae896a86ab7cc5587eba4dc36768134fabc70ba8ccc84ea43fe40a0a2517862975b3670c3d68e89cd49b60975e80a002ac0199437ddf
ssdeep: 49152:mC4KKKKK3U3zQb8Mygm/27wiP3zQb8Mygm/27wiNtL3zQb8Mygm/27wiZWT/:n4KKKKKYrMytONbrMytONNdrMytONu/
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 Microsoft 2012
Assembly Version: 1.0.0.0
InternalName: Stub.exe
FileVersion: 1.0.0.0
CompanyName: Microsoft
LegalTrademarks:
Comments:
ProductName: Client
ProductVersion: 1.0.0.0
FileDescription: Client
OriginalFilename: Stub.exe

MSIL/Agent.ADE also known as:

MicroWorld-eScanGen:Heur.MSIL.Krypt.2
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
Qihoo-360HEUR/QVM03.0.466B.Malware.Gen
McAfeeGenericRXJA-IT!4F528F978E73
CylanceUnsafe
AegisLabHacktool.Win32.UAC.3!c
SangforMalware
BitDefenderGen:Heur.MSIL.Krypt.2
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
AvastWin32:GenMaliciousA-OQJ [Trj]
GDataMSIL.Trojan-Spy.Keylogger.I
KasperskyExploit.Win32.UAC.eez
AlibabaTrojanSpy:MSIL/Blanajog.0c0e831a
TencentWin32.Exploit.Uac.Pfjm
Ad-AwareGen:Heur.MSIL.Krypt.2
EmsisoftGen:Heur.MSIL.Krypt.2 (B)
F-SecureTrojan.TR/UACMe.uvzup
TrendMicroTROJ_GEN.R002C0DBF20
McAfee-GW-EditionGenericRXJA-IT!4F528F978E73
FireEyeGeneric.mg.4f528f978e733277
SophosMal/SpyGate-A
SentinelOneDFI – Malicious PE
AviraTR/UACMe.uvzup
Endgamemalicious (high confidence)
ArcabitTrojan.MSIL.Krypt.2
ZoneAlarmHEUR:Backdoor.MSIL.SpyGate.gen
MicrosoftTrojanSpy:MSIL/Blanajog.A
BitDefenderThetaGen:NN.ZemsilF.34090.op0@amyCLqi
MAXmalware (ai score=87)
VBA32Exploit.UAC
MalwarebytesTrojan.Agent.Gen
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Agent.ADE
TrendMicro-HouseCallTROJ_GEN.R002C0DBF20
RisingHackTool.UACMe!8.4B36 (C64:YzY0OnGD+EGj9c30)
FortinetMSIL/Agent.YW!tr
AVGWin32:GenMaliciousA-OQJ [Trj]
Cybereasonmalicious.78e733
Paloaltogeneric.ml

How to remove MSIL/Agent.ADE?

MSIL/Agent.ADE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment