Trojan

MSIL/TrojanDownloader.Agent.HPR (file analysis)

Malware Removal

The MSIL/TrojanDownloader.Agent.HPR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.HPR virus can do?

  • Presents an Authenticode digital signature

How to determine MSIL/TrojanDownloader.Agent.HPR?


File Info:

crc32: B382CD97
md5: 8c49eb2bca54789f0d7a43870f12b35e
name: 8C49EB2BCA54789F0D7A43870F12B35E.mlw
sha1: 8ebd951461383fda7c7cabe5f62f1273bfa17d58
sha256: 98c21c47ae7deca0bc86e0027cb5aace2c50153582e34252d639bdc669782aa1
sha512: 6b3398418d8fb2bac6d3fbc08614428fdcd82665fa9500807e62338d2d2a5ecee7ca17af563987ab0e80d2f2f2c1d9ca57fbcc65f04af2587e376725ac934751
ssdeep: 1536:aWXrrZot/bv5QoJ7nV1wbLNBoJCy3bu/PHNoUT1Msp2cfz9ybD+T/Jri:rrQv5QoJ7nV1wbLNBoJCy3bu/PHNoUTI
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: All Rights Reserved
Assembly Version: 2.414.26.886
InternalName: xd42dxd420xd450xd43dxd41bxd44bxd433xd443xd44dxd432xd43bxd451xd430xd44exd447.exe
FileVersion: 2.414.26.886
CompanyName: xd42dxd420xd450xd43dxd41bxd44bxd433xd443xd44dxd432xd43bxd451xd430xd44exd447 Inc.
LegalTrademarks: xd42dxd420xd450xd43dxd41bxd44bxd433xd443xd44dxd432xd43bxd451xd430xd44exd447
Comments: xd42dxd420xd450xd43dxd41bxd44bxd433xd443xd44dxd432xd43bxd451xd430xd44exd447
ProductName: xd42dxd420xd450xd43dxd41bxd44bxd433xd443xd44dxd432xd43bxd451xd430xd44exd447
ProductVersion: 2.414.26.886
FileDescription: xd42dxd420xd450xd43dxd41bxd44bxd433xd443xd44dxd432xd43bxd451xd430xd44exd447
OriginalFilename: xd42dxd420xd450xd43dxd41bxd44bxd433xd443xd44dxd432xd43bxd451xd430xd44exd447.exe
Translation: 0x0000 0x0514

MSIL/TrojanDownloader.Agent.HPR also known as:

Elasticmalicious (high confidence)
McAfeeArtemis!8C49EB2BCA54
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.HPR
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderThetaGen:NN.ZemsilF.34628.fm1@aaLnHRii
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.8c49eb2bca54789f
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Wacatac.B!ml

How to remove MSIL/TrojanDownloader.Agent.HPR?

MSIL/TrojanDownloader.Agent.HPR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment