Trojan

MSIL/TrojanDownloader.Agent.HBD removal

Malware Removal

The MSIL/TrojanDownloader.Agent.HBD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.HBD virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/TrojanDownloader.Agent.HBD?


File Info:

crc32: F4254148
md5: 3c9f99f80db4eda2078a8564afe7185f
name: 3C9F99F80DB4EDA2078A8564AFE7185F.mlw
sha1: a4361b993d61c37e58c6552ea59b4634ddc8cda3
sha256: 6e1a17d620bdeba7661494a769ebc1fb0fad89fbc72c5c07434f41ae3253322b
sha512: b3a74fb3ef43f3dadeef23883758c52cac2a6d31a5478ee3b5ace6b4515ccd36309075e78779788fc4d1e6fecd07e8a92f6b1ef3712297ecc727d97372b5ba58
ssdeep: 384:+kY3N2Tsgj8RHc3s2A96YQ+vbGzVPTT240frwXkNBvVPgSWOmWkVDgf2h:fQa7J3jMDBvbmPTMwXkNBvxgiSUf2h
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
Assembly Version: 0.1.29.0
InternalName: Microsoft.PythonTools.Analyzer.exe
FileVersion: 0.1.29.0
CompanyName: Microsoft
Comments: Performs analysis of the Python standard library and installed site packages.
ProductName: Microsoft.PythonTools.Analyzer
ProductVersion: 0.1.29
FileDescription: Visual Studio - Python background analyzer
OriginalFilename: Microsoft.PythonTools.Analyzer.exe

MSIL/TrojanDownloader.Agent.HBD also known as:

BitDefenderThetaGen:NN.ZemsilCO.34670.bm1@auAUMWh
KasperskyUDS:DangerousObject.Multi.Generic
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmUDS:DangerousObject.Multi.Generic
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.HBD

How to remove MSIL/TrojanDownloader.Agent.HBD?

MSIL/TrojanDownloader.Agent.HBD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment