Spy

MSIL/Spy.Agent.CCY malicious file

Malware Removal

The MSIL/Spy.Agent.CCY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Spy.Agent.CCY virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSIL/Spy.Agent.CCY?


File Info:

crc32: 81DCEC18
md5: 77c929ca9c9a2b0a26251c612ce611df
name: 77C929CA9C9A2B0A26251C612CE611DF.mlw
sha1: dc3d59f84470da0c820a0d13893bcb114e84c8ff
sha256: fd463d6ccf33883236cae97f301cfb62e9844a73c885d58f22ebcd3ecc18dcfe
sha512: 66539b7d39a269532661b03e934b6e411bc41ac01ad47ca1958a1093000dcfe4d112c406d18588036ec2517cf1070a669d4908b6866ebda3f7cbcde9103186de
ssdeep: 49152:D0Hyi0k9/nsx/wfHGfzWOe4OSsn50OaeXpUfcza32ehyfTsm:D0Si0k9/nsNoHGfzWOe4OSsnmOao
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 MaxXor 2020
Assembly Version: 1.4.0.0
InternalName: Client.exe
FileVersion: 1.4.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Quasar
ProductVersion: 1.4.0
FileDescription: Quasar Client
OriginalFilename: Client.exe

MSIL/Spy.Agent.CCY also known as:

K7AntiVirusTrojan ( 005690671 )
LionicTrojan.MSIL.Quasar.4!c
Elasticmalicious (high confidence)
DrWebBackDoor.QuasarNET.3
CynetMalicious (score: 100)
ALYacIL:Trojan.MSILZilla.2050
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaBackdoor:MSIL/Quasar.4f3cf612
K7GWTrojan ( 005690671 )
Cybereasonmalicious.a9c9a2
CyrenW32/MSIL_Kryptik.DOD.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.CCY
APEXMalicious
AvastMSIL:Quasar-A [Rat]
ClamAVWin.Packed.Passwordstealera-9792228-0
KasperskyHEUR:Trojan.MSIL.Quasar.gen
BitDefenderIL:Trojan.MSILZilla.2050
MicroWorld-eScanIL:Trojan.MSILZilla.2050
Ad-AwareIL:Trojan.MSILZilla.2050
SophosMal/Generic-R + Mal/Quasar-A
BitDefenderThetaGen:NN.ZemsilF.34170.Wo0@aeCuJ@b
McAfee-GW-EditionGenericRXLX-DS!77C929CA9C9A
FireEyeGeneric.mg.77c929ca9c9a2b0a
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1135947
Antiy-AVLTrojan/Generic.ASMalwS.3342169
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:MSIL/Quasar.GG!MTB
GridinsoftSpy.Win32.Keylogger.dd!n
ZoneAlarmHEUR:Trojan.MSIL.Quasar.gen
GDataIL:Trojan.MSILZilla.2050
AhnLab-V3Backdoor/Win32.QuasarRAT.R341693
McAfeeGenericRXLX-DS!77C929CA9C9A
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesBackdoor.Quasar
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R06CC0DIN21
IkarusBackdoor.Win32.Xiclog
FortinetMSIL/Agent.BXX!tr
AVGMSIL:Quasar-A [Rat]
Paloaltogeneric.ml

How to remove MSIL/Spy.Agent.CCY?

MSIL/Spy.Agent.CCY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment