Trojan

How to remove “MSIL/TrojanDownloader.Agent.DRO”?

Malware Removal

The MSIL/TrojanDownloader.Agent.DRO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.DRO virus can do?

  • Authenticode signature is invalid

How to determine MSIL/TrojanDownloader.Agent.DRO?


File Info:

name: 8FC3CB7F289AD7941D54.mlw
path: /opt/CAPEv2/storage/binaries/df34f9eac1f5984030f88286643b6bce3cb2b677a6dc4abe07d548b935a35529
crc32: AD4693AF
md5: 8fc3cb7f289ad7941d5460f5f2ca0556
sha1: f168188d05de96713add1052b0e3980727cdba35
sha256: df34f9eac1f5984030f88286643b6bce3cb2b677a6dc4abe07d548b935a35529
sha512: 42f41bd6ace6a5af854fde0839d84f1e91ab8e2992472b5c6fc76c3d6ebd651373a8f93746898a7236de1c6f40de142a56dfe85a5e7d7e2e5d890815dd28f3e8
ssdeep: 3072:q/NRacEwNccunj6dpABRoXNpqAAAANWgyA1ffffffffffffffSrwEjWzR:wN2Q9pqAAAANWNwEj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D51481B4221D11C8EB097DB28DA145A4E5F1DE29C4D72B9EC33E792409727789E4CEEC
sha3_384: b580bb9647a656a2a154aadf5f7a685902aab31f68e2796a4e07b0f79277c6002353f716d95e30e7acbde847b3359725
ep_bytes: ff250020400000000000000000000000
timestamp: 2017-08-31 11:29:13

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: ConsoleApp67
FileVersion: 1.0.0.0
InternalName: ConsoleApp67.exe
LegalCopyright: Copyright © 2017
LegalTrademarks:
OriginalFilename: ConsoleApp67.exe
ProductName: ConsoleApp67
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/TrojanDownloader.Agent.DRO also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Generic.4!c
ClamAVWin.Trojan.Coinminer-9873209-0
CAT-QuickHealTrojan.Generic
SkyhighGenericRXCM-XW!8FC3CB7F289A
McAfeeGenericRXCM-XW!8FC3CB7F289A
Cylanceunsafe
ZillyaDownloader.Agent.Win32.343602
SangforDownloader.Win32.Agent.V0d6
K7AntiVirusTrojan-Downloader ( 005158b21 )
AlibabaTrojan:MSIL/Generic.7dc5ba58
K7GWTrojan-Downloader ( 005158b21 )
Cybereasonmalicious.d05de9
BitDefenderThetaGen:NN.ZemsilF.36680.lm0@aqm0Qvi
SymantecTrojan.Gen
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.DRO
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Agent.esjkmu
AvastWin32:Malware-gen
TencentMsil.Trojan-Downloader.Ader.Kmnw
F-SecureHeuristic.HEUR/AGEN.1313786
DrWebTrojan.DownLoader25.22749
TrendMicroTROJ_GEN.R002C0PAA24
SophosMal/Generic-S
IkarusTrojan-Downloader.MSIL.Agent
JiangminTrojan.Generic.cdihz
GoogleDetected
AviraHEUR/AGEN.1313786
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Trojan.Generic.a
MicrosoftTrojan:Win32/Skeeyah.A!bit
XcitiumMalware@#p9oryi8uhf80
ZoneAlarmHEUR:Trojan.Win32.Generic
AhnLab-V3Trojan/Win32.Agent.C2116669
MalwarebytesMachineLearning/Anomalous.95%
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PAA24
RisingDownloader.Agent!8.B23 (CLOUD)
YandexTrojan.Agent!d4+8+TX0keg
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Agent.DRO!tr.dldr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove MSIL/TrojanDownloader.Agent.DRO?

MSIL/TrojanDownloader.Agent.DRO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment