Malware

MSIL/Flooder.Agent.DQ removal instruction

Malware Removal

The MSIL/Flooder.Agent.DQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Flooder.Agent.DQ virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine MSIL/Flooder.Agent.DQ?


File Info:

name: A2A8C57191A2AF08A9B1.mlw
path: /opt/CAPEv2/storage/binaries/490cab65740b46b243ddf8aff32ea07fd6c84c52c5e6dc438ef2552d9fe23dab
crc32: 5659020A
md5: a2a8c57191a2af08a9b1a3dc319c7df0
sha1: d01ef209f9d65e726452ea9349f7bcd31b3a891b
sha256: 490cab65740b46b243ddf8aff32ea07fd6c84c52c5e6dc438ef2552d9fe23dab
sha512: b68df4712758e0e9d74a0e65c5b3a026600ffd85c38e04b33177757ed851805eef656af0609f7fee35c24262bb93294ba531e21e4b0ab6b0f69cd87f03b9e081
ssdeep: 192:vA38oA4nAbtpUkkzPUBatpMRjLKBjnKEHIjq0ZFgjWjJfT:vU8oxnbW4XMRjLKBj3IjT6WVf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17A32180467F8CA36E5FB4B3C58E286401772E32B9813DB5F2BC4E05A2F277810A61776
sha3_384: 99b710a53d6a53778ecf81aea8373d13ea1f1b17e73cc2cb65cf8e1347edd2d4102e3a6aee8f8934853f5ebf04316650
ep_bytes: ff250020400000000000000000000000
timestamp: 2042-08-11 16:07:34

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Windows MikroTik
FileVersion: 1.0.0.0
InternalName: Windows MikroTik.exe
LegalCopyright: Copyright © 2019
LegalTrademarks:
OriginalFilename: Windows MikroTik.exe
ProductName: Windows MikroTik
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/Flooder.Agent.DQ also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Sysn.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanTrojan.GenericKD.65783445
FireEyeTrojan.GenericKD.65783445
McAfeeArtemis!A2A8C57191A2
Cylanceunsafe
K7AntiVirusTrojan ( 005573e21 )
AlibabaTrojanDropper:MSIL/Generic.0d7164a0
K7GWTrojan ( 005573e21 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZemsilF.36308.am0@aa4KXdo
ESET-NOD32a variant of MSIL/Flooder.Agent.DQ
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Dropper.MSIL.Sysn.gen
BitDefenderTrojan.GenericKD.65783445
AvastWin32:DropperX-gen [Drp]
TencentMsil.Trojan-Dropper.Sysn.Dnhl
McAfee-GW-EditionArtemis
AviraTR/Flooder.rddne
MicrosoftTrojan:Win32/Wacatac.B!ml
MAXmalware (ai score=86)
TrendMicro-HouseCallTROJ_GEN.R002H0DC423
RisingDropper.Sysn!8.3D8 (CLOUD)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.DQ!tr
AVGWin32:DropperX-gen [Drp]
Cybereasonmalicious.9f9d65

How to remove MSIL/Flooder.Agent.DQ?

MSIL/Flooder.Agent.DQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment