Malware

MSIL/Agent.CTE malicious file

Malware Removal

The MSIL/Agent.CTE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Agent.CTE virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSIL/Agent.CTE?


File Info:

crc32: 6BD9D65B
md5: ae299610ee88ab1285f85ca5ce5d38c5
name: AE299610EE88AB1285F85CA5CE5D38C5.mlw
sha1: e9acbde9de24605b0863f3881c3f1d2a4379f63c
sha256: f808d8310d1778ad52d2a84384c180744fb303e1f779fac04df98974db374d57
sha512: 2963f2510aa1779435431da66a97bab8d5086c74853eb57551bf47448b698d2beb681f62585d75c98739c92b5af4d9a63c2e663ff42ecc44c6295409a3cc1e3f
ssdeep: 1536:ucmfPSxuvx+ZGUmt/fdUmHBZfGzTNpzTBf9nK2JkFe4FbgU3xbTq:uDfKxuwUbt/fdUmhZfGzTvzTBlntJkF
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: WpnService
Assembly Version: 1.0.0.0
InternalName: WpnService
FileVersion: 1.0.0.0
CompanyName: Microsoft Corporation
LegalTrademarks:
Comments:
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 1.0.0.0
FileDescription: Host Process for Windows Services
OriginalFilename: WpnService

MSIL/Agent.CTE also known as:

K7AntiVirusTrojan ( 00566abe1 )
LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
DrWebBackDoor.AsyncRATNET.2
ALYacTrojan.GenericKD.37378314
MalwarebytesBackdoor.AsyncRAT
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.37378314
K7GWTrojan ( 00566abe1 )
CyrenW32/MSIL_Kryptik.CYI.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.CTE
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
AlibabaTrojanDropper:Win32/dropper.ali1003001
MicroWorld-eScanTrojan.GenericKD.37378314
TencentMsil.Backdoor.Crysan.Lnob
Ad-AwareTrojan.GenericKD.37378314
SophosMal/Generic-S (PUA)
BitDefenderThetaGen:NN.ZemsilF.34104.fm0@aaIrWan
TrendMicroTROJ_GEN.R002C0WHD21
FireEyeGeneric.mg.ae299610ee88ab12
EmsisoftTrojan.GenericKD.37378314 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1121262
Antiy-AVLTrojan[Backdoor]/MSIL.Crysan
KingsoftWin32.Hack.Undef.(kcloud)
ArcabitTrojan.Generic.D23A590A
GDataTrojan.GenericKD.37378314
AhnLab-V3Trojan/Win32.RL_Generic.C4279604
VBA32CIL.StupidStealth.Heur
MAXmalware (ai score=86)
TrendMicro-HouseCallTROJ_GEN.R002C0WHD21
IkarusWin32.Outbreak
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.CTE!tr
PandaTrj/GdSda.A

How to remove MSIL/Agent.CTE?

MSIL/Agent.CTE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment