Trojan

Should I remove “MSIL/TrojanDownloader.Agent.LJP”?

Malware Removal

The MSIL/TrojanDownloader.Agent.LJP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.LJP virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine MSIL/TrojanDownloader.Agent.LJP?


File Info:

name: 26E128CA21AE086C6CE3.mlw
path: /opt/CAPEv2/storage/binaries/2436139a182cd467b9669673ef9953bd25337fbb083995a7b69534bcfb75e9d5
crc32: 53E7C1C3
md5: 26e128ca21ae086c6ce3d8918f2bef37
sha1: bfb45993dd2c63f594c5c075330736fff3e27565
sha256: 2436139a182cd467b9669673ef9953bd25337fbb083995a7b69534bcfb75e9d5
sha512: 07b991e6d191c13cc182495f2b8f9cd06132d2b5ac832cc5b015bb2fd430f4ec3b4b22866e6f768833687b22cf74320f2263d9e2911193eaaef44d5d86455db5
ssdeep: 384:QOiMqPIA3xiIegvLqrCzA/o53hfmQ/siM0nwzUmgC4I/AfLRKtU9j9hOy5:Q15/U6SUmhal9hR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T103B22A01A7382723CEA58BF825D586118F753745B9A4EAAF4CE3C0C55AC2B950F82E1F
sha3_384: d61581e951694492b149186f38a8721532eaf65967aef164b8eb5399d045aaea24e83e41211f3dc3b95861f852eda88a
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-04-26 06:13:31

Version Info:

Translation: 0x0000 0x04b0
FileDescription: YEWHSHJSJUISYUS
FileVersion: 1.0.0.0
InternalName: YEWHSHJSJUISYUS.exe
LegalCopyright: Copyright © 2022
OriginalFilename: YEWHSHJSJUISYUS.exe
ProductName: YEWHSHJSJUISYUS
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/TrojanDownloader.Agent.LJP also known as:

AlibabaTrojan:MSIL/Generic.9a735ca5
CrowdStrikewin/malicious_confidence_90% (W)
SymantecMSIL.Downloader!gen2
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.LJP
APEXMalicious
KasperskyVHO:Trojan-Spy.MSIL.Noon.gen
DrWebTrojan.DownloaderNET.252
McAfee-GW-EditionArtemis!Trojan
IkarusWin32.Outbreak
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
McAfeeArtemis!26E128CA21AE
MalwarebytesTrojan.Downloader
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.LFL!tr.dldr
Cybereasonmalicious.3dd2c6

How to remove MSIL/TrojanDownloader.Agent.LJP?

MSIL/TrojanDownloader.Agent.LJP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment