Spy

Should I remove “MSIL/Spy.Agent.GN”?

Malware Removal

The MSIL/Spy.Agent.GN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Spy.Agent.GN virus can do?

  • Authenticode signature is invalid

How to determine MSIL/Spy.Agent.GN?


File Info:

name: 5AC89C3D4227034CA282.mlw
path: /opt/CAPEv2/storage/binaries/36ba2bd2f374b14e25ab5fdb4f168ef7c7ce97cf5a7ff32e43a835d1ebd0e513
crc32: 6EE46405
md5: 5ac89c3d4227034ca282d593cccf347c
sha1: 516ea764635426a9ab5a10bab09c51348e3ee39f
sha256: 36ba2bd2f374b14e25ab5fdb4f168ef7c7ce97cf5a7ff32e43a835d1ebd0e513
sha512: 8cc883feea92b5ef1a0de6fcbb34349f56b42660741117068732f99adfaddf3819b8f1551adff33e1c52f88aab52543095c2b8b14963194c0d3964884beb756e
ssdeep: 384:jGaRIorFBiFKx5v38y3QLp29Jub/mPkaVIKvtMNokpkjUo16wzDJ:CJorvjxZPAgyQRt/7jUo17
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1A7A2C50377ADCB04E5BF497DE9B2424E877465231911CB5F38C360AC79A7384990AEBB
sha3_384: d1c6cbee362d49b107b0c37ffd3f050e57594c629e18f59ad45dba9427c74c6a35d33a31ce864e3932320b222856b2d9
ep_bytes: ff250020400000000000000000000000
timestamp: 2015-10-19 22:15:53

Version Info:

Translation: 0x0000 0x04b0
FileDescription: Windows Services
FileVersion: 1.0.0.1
InternalName: Botnet.exe
LegalCopyright:
OriginalFilename: Botnet.exe
ProductName: Windows Services
ProductVersion: 1.0.0.1
Assembly Version: 1.0.0.1

MSIL/Spy.Agent.GN also known as:

LionicTrojan.Win32.Generic.l!c
MicroWorld-eScanTrojan.GenericKD.62702202
ClamAVWin.Malware.Razy-9936000-0
FireEyeGeneric.mg.5ac89c3d4227034c
CAT-QuickHealTrojan.GenericFC.S20328618
ALYacTrojan.GenericKD.62702202
CylanceUnsafe
ZillyaTrojan.Agent.Win32.878125
SangforTrojan.Win32.Generic.ky
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojanSpy:Win32/SpywareX.badc9937
K7GWSpyware ( 004ba6631 )
K7AntiVirusSpyware ( 004ba6631 )
CyrenW32/ABRisk.UATL-3890
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Spy.Agent.GN
Paloaltogeneric.ml
CynetMalicious (score: 99)
KasperskyHEUR:Trojan-Spy.Win32.Generic
BitDefenderTrojan.GenericKD.62702202
NANO-AntivirusTrojan.Win32.Agent.einvld
AvastWin32:SpywareX-gen [Trj]
TencentWin32.Trojan-Spy.Generic.Edhl
Ad-AwareTrojan.GenericKD.62702202
EmsisoftTrojan.GenericKD.62702202 (B)
F-SecureHeuristic.HEUR/AGEN.1203337
VIPRETrojan.GenericKD.62702202
TrendMicroTROJ_GEN.R03BC0WJD22
McAfee-GW-EditionArtemis!Trojan
SophosGeneric PUA FB (PUA)
IkarusTrojan.MSIL.Spy
GDataTrojan.GenericKD.62702202
JiangminTrojanSpy.Generic.dmh
AviraHEUR/AGEN.1203337
Antiy-AVLTrojan/Generic.ASMalwS.77B6
ArcabitTrojan.Generic.D3BCC27A
ViRobotTrojan.Win32.Z.Agent.22016.CII
ZoneAlarmHEUR:Trojan-Spy.Win32.Generic
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.RL_Generic.C4197797
McAfeeRDN/Generic PWS.y
MAXmalware (ai score=85)
VBA32Trojan.MSIL.gen.b.7
MalwarebytesBackdoor.Bot
TrendMicro-HouseCallTROJ_GEN.R03BC0WJD22
RisingTrojan.Generic/MSIL@AI.95 (RDM.MSIL:oH+zbbkHO674EmEg928xNA)
SentinelOneStatic AI – Suspicious PE
FortinetMSIL/Agent.GN!tr.spy
BitDefenderThetaGen:NN.ZemsilF.34726.bm0@aaWskTl
AVGWin32:SpywareX-gen [Trj]
Cybereasonmalicious.d42270
PandaTrj/GdSda.A

How to remove MSIL/Spy.Agent.GN?

MSIL/Spy.Agent.GN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment