Malware

MSIL/Agent.VPU removal guide

Malware Removal

The MSIL/Agent.VPU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Agent.VPU virus can do?

  • Authenticode signature is invalid

How to determine MSIL/Agent.VPU?


File Info:

name: 4452290E674AB521FA09.mlw
path: /opt/CAPEv2/storage/binaries/3f94b20cb7f4ff55207660649ebbb02679c991fe03efbcb0bd3840fc7f0bd527
crc32: AF24B571
md5: 4452290e674ab521fa0941d45cc6b22f
sha1: 459b17c42017cfdfc7eb804b5c0ee52aa6035d78
sha256: 3f94b20cb7f4ff55207660649ebbb02679c991fe03efbcb0bd3840fc7f0bd527
sha512: 3089795d6fa3ed4e87b35f337d304461a57b5c9a8a7023abf13bc18c3a0c7f1174ab11e3e37ae0b9da04b31a9dc0b0baa512d7d0d8ebef08ac0fca9204bfc5bc
ssdeep: 384:C0hFfJk9VWSbaauzoKrLiJXvZTpzaOb+PtgLG/RqY6Hyj5/a1Jp:CSfJkuSwf2fiOba795/aLp
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T175822D05A7E88337C56E0AB5A4B3019003F2E712E412FB4E5CDD706B2D637699D52FA6
sha3_384: 7de3b344dc0a2fe9389268768b7ac5d1a74834257c0d252abf9216011d9aaba072e8c7fe2337c81fe188680347df3611
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-12-23 21:32:17

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: CmService
FileVersion: 9.12.0.3
InternalName: CmService.exe
LegalCopyright: Copyright © 2018
LegalTrademarks:
OriginalFilename: CmService.exe
ProductName: CmService
ProductVersion: 9.12.0.3
Assembly Version: 9.12.0.3

MSIL/Agent.VPU also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Agent.Y!c
AVGWin32:MalwareX-gen [Trj]
Elasticmalicious (moderate confidence)
SkyhighRDN/Generic.dx
ALYacTrojan.MSIL.Agent
Cylanceunsafe
ZillyaTrojan.Agent.Win32.2258445
SangforTrojan.Msil.Agent.Vf7i
K7AntiVirusTrojan ( 0059d8721 )
AlibabaTrojan:Win32/Generic.8e1ba8d5
K7GWTrojan ( 0059d8721 )
VirITTrojan.Win32.MSIL_Heur.A
SymantecTrojan Horse
ESET-NOD32a variant of MSIL/Agent.VPU
KasperskyHEUR:Trojan.MSIL.Agent.gen
AvastWin32:MalwareX-gen [Trj]
RisingTrojan.Agent!8.B1E (CLOUD)
F-SecureTrojan.TR/Agent.kklva
DrWebBackDoor.SiggenNET.59
TrendMicroTROJ_GEN.R002C0PDO23
SophosMal/Generic-S
JiangminTrojan.MSIL.abmis
VaristW32/ABRisk.RUEA-3139
AviraTR/Agent.kklva
Antiy-AVLTrojan/MSIL.Agent
KingsoftWin32.Troj.Agent.cks
XcitiumMalware@#2p88kkxolk08h
MicrosoftTrojan:MSIL/Malgent!MSR
ZoneAlarmHEUR:Trojan.MSIL.Agent.gen
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C4543152
McAfeeRDN/Generic.dx
VBA32TScope.Trojan.MSIL
MalwarebytesGeneric.Trojan.MSIL.DDS
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0PDO23
TencentMalware.Win32.Gencirc.10bed6d6
YandexTrojan.Agent!97xsOHvgkOY
IkarusTrojan.MSIL.Agent
MaxSecureTrojan.Malware.729229.susgen
FortinetW32/Agent!tr
BitDefenderThetaGen:NN.ZemsilF.36802.bm0@aiaXfOj
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudTrojan:MSIL/Agent.VPU

How to remove MSIL/Agent.VPU?

MSIL/Agent.VPU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment