Trojan

MSIL/TrojanDownloader.Agent.HWS removal guide

Malware Removal

The MSIL/TrojanDownloader.Agent.HWS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.HWS virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine MSIL/TrojanDownloader.Agent.HWS?


File Info:

crc32: BADECF5F
md5: 01013148b1d06aecc4f71995fc322184
name: 01013148B1D06AECC4F71995FC322184.mlw
sha1: 0c2fb82451ba31213bce9d62172362e9545611c4
sha256: 4b7b2ffc5601d2ad59980bfdf5e9076e456d1a40ca5adde771952e4cdcfcfaec
sha512: cfea70b1c3bde9abbeae444edd1f2eee2f3031b24efc431ed89caf26ad059c40c3da2339fbd1f58dd6f21196b4391e4e0c46ebf3dbd9f8fe217843468c9998f2
ssdeep: 96:ym7Kqkn2k8hbSQiTkv3cbIHw70y+zwTZOjAhD9LaxzNta:gFa/EsHw7P+zwTZOjA/eTM
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021 Chia Network
Assembly Version: 0.0.0.0
InternalName: Carlos_log.exe
FileVersion: 1.1.4.0
CompanyName: Chia Network
Comments: GUI for Chia Blockchain
ProductName: GUI for Chia Blockchain
ProductVersion: 1.1.4.0
FileDescription: Setup.exe
OriginalFilename: Carlos_log.exe

MSIL/TrojanDownloader.Agent.HWS also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.InjectNET.14
SangforTrojan.Win32.Woreflint.A
CrowdStrikewin/malicious_confidence_60% (W)
K7GWRiskware ( 0040eff71 )
CyrenW32/MSIL_Kryptik.EFO.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32MSIL/TrojanDownloader.Agent.HWS
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan-PSW.MSIL.Stelega.gen
BitDefenderTrojan.GenericKD.36873596
MicroWorld-eScanTrojan.GenericKD.36873596
Ad-AwareTrojan.GenericKD.36873596
SophosMal/Generic-S
ComodoTrojWare.Win32.Agent.bsclo@0
BitDefenderThetaGen:NN.ZemsilF.34688.bm0@aqFckwe
TrendMicroTROJ_FRS.VSNTEA21
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.01013148b1d06aec
EmsisoftTrojan.GenericKD.36873596 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
KingsoftWin32.PSWTroj.Undef.(kcloud)
MicrosoftTrojan:Win32/Woreflint.A!cl
ArcabitTrojan.Generic.D232A57C
AegisLabTrojan.MSIL.Stelega.i!c
GDataTrojan.GenericKD.36873596
AhnLab-V3Trojan/Win.Generic.C4465650
McAfeeArtemis!01013148B1D0
MAXmalware (ai score=89)
MalwarebytesMalware.AI.124132840
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_FRS.VSNTEA21
RisingDownloader.Agent!8.B23 (CLOUD)
IkarusTrojan-Downloader.MSIL.Agent
FortinetMSIL/Agent.HWS!tr.dldr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove MSIL/TrojanDownloader.Agent.HWS?

MSIL/TrojanDownloader.Agent.HWS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment