Trojan

MSIL/TrojanDownloader.Agent.HLH removal

Malware Removal

The MSIL/TrojanDownloader.Agent.HLH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.HLH virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/TrojanDownloader.Agent.HLH?


File Info:

crc32: D68FB577
md5: 67de01808fbe0905dcf92ac883eabd83
name: 67DE01808FBE0905DCF92AC883EABD83.mlw
sha1: ee3c4ecffd7367f531a606e6c2a7fc73d46a9702
sha256: 1e8eac023442e13626053a34dc9a863e4d185388acd409ce677752a3436e82cf
sha512: a9d7668df7db153e1c705274acc01b7655ee71d1477aff0f6334683db8afffa9c812901788ea3eb4bbcf5ab0469cb9b5c7ac5afa3a0da2429a3f705201144425
ssdeep: 1536:OW1oU5tSyxMSt0oBTitFZUnKt/pYyGSUW65Da08:OW1ocSrSSo4t4n6/p5UWw6
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright 2022 xa9 LeXzOfeK. All rights reserved.
Assembly Version: 0.5.5.1
InternalName: XkGgDKpw.exe
FileVersion: 8.5.4.5
CompanyName: GrniCcUC
LegalTrademarks: IVJUWIYJ
Comments: DumNTXFA
ProductName: XkGgDKpw
ProductVersion: 0.5.5.1
FileDescription: LjpAGdFw
OriginalFilename: XkGgDKpw.exe
Translation: 0x0409 0x0514

MSIL/TrojanDownloader.Agent.HLH also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen12.5373
MicroWorld-eScanGen:Heur.Conjar.1
FireEyeGeneric.mg.67de01808fbe0905
McAfeeRDN/Generic.grp
CylanceUnsafe
Cybereasonmalicious.08fbe0
ArcabitTrojan.Conjar.1
BitDefenderThetaGen:NN.ZemsilF.34590.hm0@aqwgGdji
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Heur.Conjar.1
Ad-AwareGen:Heur.Conjar.1
EmsisoftGen:Heur.Conjar.1 (B)
McAfee-GW-EditionArtemis!Trojan
MicrosoftTrojan:Win32/Wacatac.B!ml
AegisLabTrojan.Win32.Conjar.4!c
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Heur.Conjar.1
CynetMalicious (score: 100)
ALYacGen:Heur.Conjar.1
MAXmalware (ai score=83)
MalwarebytesTrojan.FakeSig.Generic
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.HLH
TrendMicro-HouseCallTROJ_GEN.R002H09BN21
SentinelOneStatic AI – Malicious PE
FortinetPossibleThreat
WebrootW32.Trojan.Gen
AVGWin32:MalwareX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.Generic.HwMAfMcA

How to remove MSIL/TrojanDownloader.Agent.HLH?

MSIL/TrojanDownloader.Agent.HLH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment