Trojan

How to remove “MSIL/TrojanDownloader.Agent.GXO”?

Malware Removal

The MSIL/TrojanDownloader.Agent.GXO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.GXO virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine MSIL/TrojanDownloader.Agent.GXO?


File Info:

crc32: 6773B618
md5: f70daa663f8f51be5247482fd212d1a4
name: gfersd.exe
sha1: ede1b28deabaa02cf2c451474d47f867377c81fb
sha256: d1ff8fc9653175919374088eade3f15aaf022129f0e3d23669717416b7161c72
sha512: 9f0cf832954976bb2ac3c3b7974da4f397d9d42fabb9d0e9c7ecf63f995fc6f84cd7ed41e5b6c460d164c1bd67095010ff0725644b5cb1324ed2c8df777545a6
ssdeep: 384:Tlh10GJgx9yXawL4QAAaf0YyKpu3P0Kebmy6xFisXBcYYLtnNim:Tr1ZJgxEX4QSf0YyDpG6jis49V
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: Forkiest.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: Forkiest.exe

MSIL/TrojanDownloader.Agent.GXO also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Spider.1
McAfeeDownloader-FBZC!F70DAA663F8F
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGen:Variant.Spider.1
K7GWTrojan ( 0056879b1 )
K7AntiVirusTrojan ( 0056879b1 )
ArcabitTrojan.Spider.1
TrendMicroTROJ_GEN.R002C0PJS20
CyrenW32/MSIL_Kryptik.BYE.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Downloader.MSIL.Seraph.gen
AlibabaTrojanDownloader:MSIL/Seraph.44f7a833
NANO-AntivirusTrojan.Win32.FBZC.iaampe
TencentMsil.Trojan-downloader.Agent.Eawr
Ad-AwareGen:Variant.Spider.1
EmsisoftGen:Variant.Spider.1 (B)
Comodo.UnclassifiedMalware@0
F-SecureTrojan.TR/Dldr.Agent.cjggt
DrWebTrojan.PWS.Siggen2.58261
InvinceaMal/Generic-S
McAfee-GW-EditionDownloader-FBZC!F70DAA663F8F
FireEyeGeneric.mg.f70daa663f8f51be
MaxSecureTrojan.Malware.300983.susgen
AviraTR/Dldr.Agent.cjggt
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Wacatac.C!ml
ViRobotTrojan.Win32.S.Agent.25088.AEC
ZoneAlarmHEUR:Trojan-Downloader.MSIL.Seraph.gen
GDataGen:Variant.Spider.1
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.RL_Generic.C4212191
BitDefenderThetaGen:NN.ZemsilF.34590.bm0@a486@@b
ALYacGen:Variant.Spider.1
MalwarebytesSpyware.RedLineStealer
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.GXO
TrendMicro-HouseCallTROJ_GEN.R002C0PJS20
IkarusTrojan-Downloader.MSIL.Agent
eGambitUnsafe.AI_Score_92%
FortinetMSIL/Agent.GVF!tr.dldr
WebrootW32.Malware.Gen
AVGWin32:RATX-gen [Trj]
AvastWin32:RATX-gen [Trj]
Qihoo-360Win32/Trojan.ae8

How to remove MSIL/TrojanDownloader.Agent.GXO?

MSIL/TrojanDownloader.Agent.GXO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment