Trojan

MSIL/TrojanDownloader.Agent.FZP malicious file

Malware Removal

The MSIL/TrojanDownloader.Agent.FZP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.FZP virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine MSIL/TrojanDownloader.Agent.FZP?


File Info:

crc32: DD1B88A1
md5: 47fdf35d8731c56e8ee7173de4bc4310
name: host.exe
sha1: d8b469a13a492f20445b19ecf2ecff8f0875c2af
sha256: a59912dee2f62b0a42b0b2de4657dadad81c942b9a630f9d6c6e048956118089
sha512: 62f3ea43235d475b7c7b1651de5916ad7c64abf42515e33750e75b2e5ffb71e0919a6ea3bb618826d5b435646eae9885f064d0cac38ed66e0b070afa8087e0b2
ssdeep: 384:jr6vu2bCFiNKc6ztzja+lGp8dUVa2Y/Q/a+CfsvblJjZJSZsHLPK6j3kUjZdZsHx:su2DNKkdpRyQBPllZtPKgZZe2ihJT
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2017 wyDay
InternalName: TurboActivate
FileVersion: 4.0.9.6
CompanyName: wyDay
ProductName: TurboActivate
ProductVersion: 4.0.9.6
FileDescription: TurboActivate
OriginalFilename: TurboActivate.dll
Translation: 0x0409 0x04b0

MSIL/TrojanDownloader.Agent.FZP also known as:

MicroWorld-eScanGen:Variant.Razy.600750
FireEyeGen:Variant.Razy.600750
Qihoo-360Generic/Trojan.3bf
McAfeeRDN/Generic Downloader.x
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan-Downloader ( 00560f971 )
BitDefenderGen:Variant.Razy.600750
K7GWTrojan-Downloader ( 00560f971 )
Cybereasonmalicious.13a492
TrendMicroTROJ_GEN.R011C0WBN20
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
GDataGen:Variant.Razy.600750
KasperskyHEUR:Trojan-Downloader.MSIL.Seraph.gen
AlibabaTrojanDownloader:MSIL/Seraph.5b8c6c6f
NANO-AntivirusTrojan.Win32.Seraph.hbscao
ViRobotTrojan.Win32.Z.Razy.35080
AegisLabTrojan.MSIL.Seraph.a!c
RisingDownloader.Agent!8.B23 (CLOUD)
Ad-AwareGen:Variant.Razy.600750
SophosMal/Generic-S
F-SecureTrojan.TR/Dldr.Agent.wevxr
DrWebTrojan.Siggen9.14183
McAfee-GW-EditionRDN/Generic Downloader.x
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Razy.600750 (B)
IkarusTrojan-Downloader.MSIL.Agent
CyrenW32/Trojan.KFKC-7080
JiangminTrojanDownloader.MSIL.uhu
AviraTR/Dldr.Agent.wevxr
Antiy-AVLTrojan[Downloader]/MSIL.Seraph
ArcabitTrojan.Razy.D92AAE
ZoneAlarmHEUR:Trojan-Downloader.MSIL.Seraph.gen
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Malware/Win32.RL_Generic.C3995802
Acronissuspicious
BitDefenderThetaGen:NN.ZemsilF.34090.cm2@aqClzNji
ALYacTrojan.Agent.Raccoon
MAXmalware (ai score=86)
MalwarebytesSpyware.PredatorTheThief
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.FZP
TrendMicro-HouseCallTROJ_GEN.R011C0WBN20
TencentMsil.Trojan-downloader.Agent.Pgdp
YandexTrojan.DL.Agent!vWYFH4lRwNs
SentinelOneDFI – Suspicious PE
eGambitPE.Heur.InvalidSig
FortinetMSIL/Agent.FYI!tr.dldr
AVGWin32:CrypterX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove MSIL/TrojanDownloader.Agent.FZP?

MSIL/TrojanDownloader.Agent.FZP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment