Malware

MSIL/Agent_AGen.DS (file analysis)

Malware Removal

The MSIL/Agent_AGen.DS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Agent_AGen.DS virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSIL/Agent_AGen.DS?


File Info:

crc32: 37638C15
md5: 56cd683c35ade22a75c94e259e2b768d
name: 56CD683C35ADE22A75C94E259E2B768D.mlw
sha1: 7ecc657d176c2f6bedd5bceed3cdbecae121bad3
sha256: bc0dcf446c9ff55e32bdc1c721158359c23d1d09b366784bfecc4c5831437ebf
sha512: def0486b9cf39dfb6a37c3ab6e8901ce0f72fc44a7d4786e4646ba2dfaebb733a0beced718bc6f706c394ecc06096cdc3f9fcf5e1814f5fd17e005b327c10951
ssdeep: 6144:ngTuoDjTIC1MuypjmvW0GLK82AJKb7cj6HWJ0mxH0fFjaY3F5gpAlhL+b5isY8B:gTlUmULEQKb4ua0oUtjxB+ZYPS
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: StaticArrayInitTypeSize1.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Console Game
ProductVersion: 1.0.0.0
FileDescription: Console Game
OriginalFilename: StaticArrayInitTypeSize1.exe

MSIL/Agent_AGen.DS also known as:

Elasticmalicious (high confidence)
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
SymantecScr.Malcode!gdn30
ESET-NOD32a variant of MSIL/Agent_AGen.DS
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Multi.GenericML.xnet
BitDefenderThetaGen:NN.ZemsilF.34236.ym0@aesYIDh
McAfee-GW-EditionBehavesLike.Win32.Fareit.fc
FireEyeGeneric.mg.56cd683c35ade22a
SentinelOneStatic AI – Malicious PE
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
McAfeeArtemis!56CD683C35AD
MalwarebytesTrojan.Crypt.MSIL
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Tesla.FIVJ!tr

How to remove MSIL/Agent_AGen.DS?

MSIL/Agent_AGen.DS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment