The MSIL/Spy.Agent.DHZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
What MSIL/Spy.Agent.DHZ virus can do?
z.whorecord.xyz |
a.tomx.xyz |
File Info:
crc32: 54E533ADmd5: 295a89feccf93ea0e55f95d486c5036aname: 295A89FECCF93EA0E55F95D486C5036A.mlwsha1: 154533d84df5af370fe785db1006d7a2608d7124sha256: a517552827e4823129d29a86c716decae6366d7bad5d8521ba6d1fd52547147dsha512: f6d3656e4d1a1e378f7f0b7e5160085d18a32787d8a978f4bca1359b2dcbf3fc601676478521d89d3455c9b0864ed308fcb6be62f8657909c2b58f372df9b009ssdeep: 12288:F1fxhwL8mLAHefRIZtbVqrTwqEZAhtuEGN8:nZyJAH/ZtxqEZMtuE7type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS WindowsVersion Info:
Translation: 0x0000 0x04b0LegalCopyright: Copyright (c) 2020 Discord Inc. All rights reserved.Assembly Version: 0.0.52.0InternalName: Xcsyck.exeFileVersion: 0.0.52.0CompanyName: Discord Inc.LegalTrademarks: Comments: Discord - https://discord.com/ProductName: Discord - https://discord.com/ProductVersion: 0.0.52.0FileDescription: Discord - https://discord.com/OriginalFilename: Xcsyck.exe
K7AntiVirus | Trojan ( 0057be311 ) |
DrWeb | Trojan.Packed2.43083 |
Cynet | Malicious (score: 99) |
Cylance | Unsafe |
Sangfor | Trojan.Win32.AgentTesla.ml |
CrowdStrike | win/malicious_confidence_90% (W) |
K7GW | Trojan ( 0057be311 ) |
Cybereason | malicious.84df5a |
Cyren | W32/MSIL_Kryptik.EEA.gen!Eldorado |
Symantec | ML.Attribute.HighConfidence |
ESET-NOD32 | MSIL/Spy.Agent.DHZ |
APEX | Malicious |
Avast | Win32:MalwareX-gen [Trj] |
Kaspersky | HEUR:Trojan-Downloader.MSIL.Seraph.gen |
BitDefender | Trojan.GenericKD.36850035 |
ViRobot | Trojan.Win32.S.Agent.691512 |
MicroWorld-eScan | Trojan.GenericKD.36850035 |
Ad-Aware | Trojan.GenericKD.36850035 |
Sophos | Mal/Generic-S + Troj/MSILIn-AQJ |
Comodo | TrojWare.Win32.UMal.pnckx@0 |
VIPRE | Trojan.Win32.Generic!BT |
McAfee-GW-Edition | RDN/Generic.grp |
FireEye | Trojan.GenericKD.36850035 |
Emsisoft | Trojan.Agent (A) |
SentinelOne | Static AI – Malicious PE |
Webroot | W32.Trojan.Gen |
Avira | TR/Spy.Agent.fjirc |
eGambit | PE.Heur.InvalidSig |
Kingsoft | Win32.Troj.Undef.(kcloud) |
Microsoft | Trojan:Win32/AgentTesla!ml |
GData | Trojan.GenericKD.36850035 |
McAfee | Artemis!295A89FECCF9 |
MAX | malware (ai score=98) |
Malwarebytes | Trojan.MalPack.MSIL |
Panda | Trj/GdSda.A |
TrendMicro-HouseCall | TROJ_GEN.F0D1C00E421 |
Rising | Trojan.AntiVM!1.CF63 (CLOUD) |
Ikarus | Trojan.Inject |
Fortinet | Malicious_Behavior.SB |
AVG | Win32:MalwareX-gen [Trj] |
Paloalto | generic.ml |
The Worm.Win32.VBNA.brst is considered dangerous by lots of security experts. When this infection is active,…
The Generic.Sdbot.82B5A71E is considered dangerous by lots of security experts. When this infection is active,…
The Lazy.490007 is considered dangerous by lots of security experts. When this infection is active,…
The Backdoor:Win32/Rbot!pz is considered dangerous by lots of security experts. When this infection is active,…
The Malware.AI.3351546188 is considered dangerous by lots of security experts. When this infection is active,…
The Malware.AI.1193900862 is considered dangerous by lots of security experts. When this infection is active,…