Malware

Should I remove “MSIL/PSW.Agent.PJR”?

Malware Removal

The MSIL/PSW.Agent.PJR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/PSW.Agent.PJR virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine MSIL/PSW.Agent.PJR?


File Info:

name: C129D7C880B7D7AF7F93.mlw
path: /opt/CAPEv2/storage/binaries/3e529d856013579035ac368d99f1bb94a74baccddc70951cd04912c7fb7296d2
crc32: 7DA0A4C7
md5: c129d7c880b7d7af7f93196ef62b770c
sha1: 373fda09d20ddeb5d14c84aeb86d6d1d65b0b182
sha256: 3e529d856013579035ac368d99f1bb94a74baccddc70951cd04912c7fb7296d2
sha512: af0a5080e89d031412ac8b425a42045caafa2cfdd6718e13b1709d283ea94887dabbc872e457059edeff3b257a9900b4a88d782ea72ed2ecc69c2a836ed09940
ssdeep: 3072:E61hu7WxqLaCXKuGF01gi2Kfm8k7Lh45PLv1hiF/2Av61hu7WxqLaCXKuGF01giC:EaeXi0ei2MS45zv1hiFxvaeXi0ei2MS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16484E02275A4A4ABEA1C967B927089342FF05C113313EB2F9C9C7B4C1E7F6852F1D196
sha3_384: 039caf9a14a61df9220f9aafc5bcd6a53002f9093c518be0a822f1015285891e434ada118ac3c38a7f6b074314e525ce
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-04-20 17:00:20

Version Info:

Translation: 0x0000 0x04b0
FileDescription: Eba_Ogretmen
FileVersion: 1.0.0.0
InternalName: Eba_Ogretmen.exe
LegalCopyright: Copyright © 2022
OriginalFilename: Eba_Ogretmen.exe
ProductName: Eba_Ogretmen
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/PSW.Agent.PJR also known as:

BkavW32.AIDetectNet.01
MalwarebytesTrojan.Crypt.MSIL.Generic
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/PSW.Agent.PJR
APEXMalicious
CynetMalicious (score: 100)
F-SecureTrojan.TR/Spy.Gen
FireEyeGeneric.mg.c129d7c880b7d7af
AviraTR/Spy.Gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaGen:NN.ZemsilCO.34606.xq0@a4BVkwk

How to remove MSIL/PSW.Agent.PJR?

MSIL/PSW.Agent.PJR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment