Crack Risk

MSIL/Riskware.HackTool.Agent.AV removal guide

Malware Removal

The MSIL/Riskware.HackTool.Agent.AV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Riskware.HackTool.Agent.AV virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine MSIL/Riskware.HackTool.Agent.AV?


File Info:

name: 58260AD8225793C4C986.mlw
path: /opt/CAPEv2/storage/binaries/d96b53876f60c628fd38f4ccb72673814827a288c94d4318fcbb9dd70a09db12
crc32: EBB514E4
md5: 58260ad8225793c4c986d4f3a3ba1de2
sha1: 8d867e49d901ad018e3528d48b8bab6dba7bb6f5
sha256: d96b53876f60c628fd38f4ccb72673814827a288c94d4318fcbb9dd70a09db12
sha512: d62b6a05efd551fa4583cb179595da26f0d60491ba2f0571e8a186313acabd327ec0ebc154e4adbc6163823b7f28d0992e40f672ca623143d760938371060fa8
ssdeep: 192:+L5Cu9CLPN0LtBJUMmYVY2Uq3bWre3Iv3oaadrq8uSF3:25JCLPN05zUMme333Sr7AJUSF
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D4420B28B7B84656CC1A46BF8C73CB402270BD56E463DF5D1CB4F1926D3134489663F9
sha3_384: 40d09c5aad6b50484186b7341096cd89ffd0ba1e7367193ec2a27b5ec202aacde16d2e5232d9e599282af2eb972f3653
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-12-05 15:50:25

Version Info:

Translation: 0x0000 0x04b0
Comments: PowerShell2Exe
CompanyName: Zander Tools
FileDescription: PowerShell-Wrapper
FileVersion: 1.0.1.1
InternalName: ozk31fi3.exe
LegalCopyright: Copyright © 2019 by Roger Zander
OriginalFilename: ozk31fi3.exe
ProductName: PowerShell to EXE converter
ProductVersion: 1.0.1.1
Assembly Version: 1.0.1.1

MSIL/Riskware.HackTool.Agent.AV also known as:

LionicHacktool.MSIL.Alien.3!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.47571667
ClamAVWin.Malware.Alien-6870625-0
FireEyeGeneric.mg.58260ad8225793c4
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
CylanceUnsafe
K7AntiVirusRiskware ( 0053bf301 )
BitDefenderTrojan.GenericKD.47571667
K7GWRiskware ( 0053bf301 )
CyrenW32/MSIL_Agent.BSA.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Riskware.HackTool.Agent.AV
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:HackTool.MSIL.Alien.gen
SophosGeneric PUA IN (PUA)
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.47571667 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1133314
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
SUPERAntiSpywareTrojan.Agent/Generic
GDataTrojan.GenericKD.47571667
McAfeeArtemis!58260AD82257
MalwarebytesHackTool.PowerShell.MSIL
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H0CL521
TencentMsil.Hacktool.Alien.Sunu
MAXmalware (ai score=86)
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/HackTool_Agent
BitDefenderThetaGen:NN.ZemsilF.34062.am0@au2zoQg
AVGWin32:Malware-gen

How to remove MSIL/Riskware.HackTool.Agent.AV?

MSIL/Riskware.HackTool.Agent.AV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment