Trojan

About “MSIL/TrojanDownloader.Agent.HEV” infection

Malware Removal

The MSIL/TrojanDownloader.Agent.HEV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.HEV virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine MSIL/TrojanDownloader.Agent.HEV?


File Info:

crc32: 49F486EC
md5: 8d8c34a084007b7ff959b2273a5bfe5b
name: 8D8C34A084007B7FF959B2273A5BFE5B.mlw
sha1: 7a3a70675310463bc1baeccfef1e660dfa71c7c9
sha256: e59adf45289797b9c9c77407bd77c4bdf1af288cd78d68de45b1abf8a7f77df5
sha512: 28f691b68237380a09e0f096f9553a9b75fc21bb8b2e06f04042a882319527f3c58bb395faaa113447375c636558eaa1ad299d765bd5978e4c60204a295d9962
ssdeep: 384:I/QkkfYpxk+JIg2OvXBvoCx67nV+opDTvyEWfKSaWMPawk5RydxS:lpgZvqCx65+opDTJ1Paw62w
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: Calculator.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Qvoid-Token-Grabber-Builder
ProductVersion: 1.0.0.0
FileDescription: Qvoid-Token-Grabber-Builder
OriginalFilename: Calculator.exe

MSIL/TrojanDownloader.Agent.HEV also known as:

K7AntiVirusTrojan-Downloader ( 005763931 )
CynetMalicious (score: 99)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojanPSW:MSIL/Disco.cea31bfb
K7GWTrojan-Downloader ( 005763931 )
CyrenW32/Trojan.ZAYT-1563
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.HEV
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan-PSW.MSIL.Disco.gen
BitDefenderTrojan.GenericKD.37648972
NANO-AntivirusTrojan.Win32.Disco.jcknly
MicroWorld-eScanTrojan.GenericKD.37648972
TencentMsil.Trojan-downloader.Agent.Edoe
Ad-AwareTrojan.GenericKD.37648972
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34170.bm0@aqHtwEg
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.8d8c34a084007b7f
EmsisoftTrojan.GenericKD.37648972 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.MSIL.Gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Trojan.Agent.K4U3T8
McAfeeArtemis!8D8C34A08400
MAXmalware (ai score=86)
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R011H0CIN21
IkarusTrojan-Downloader.MSIL.Agent
FortinetMSIL/Agent.HEV!tr.dldr
AVGWin32:Trojan-gen

How to remove MSIL/TrojanDownloader.Agent.HEV?

MSIL/TrojanDownloader.Agent.HEV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment