Trojan

MSIL/TrojanDownloader.Agent.MIA (file analysis)

Malware Removal

The MSIL/TrojanDownloader.Agent.MIA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.MIA virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • .NET file is packed/obfuscated with SmartAssembly
  • Authenticode signature is invalid

How to determine MSIL/TrojanDownloader.Agent.MIA?


File Info:

name: B39EE6DEC57D823EB38D.mlw
path: /opt/CAPEv2/storage/binaries/4f5057f749812cda5d588b54fa0e514a3c0acf82d2a7bc6ec4eb7074cc950683
crc32: 0905B259
md5: b39ee6dec57d823eb38dd95f71de0236
sha1: 8c14cc39a2363ff2bf62f2fb92e533110046b2f2
sha256: 4f5057f749812cda5d588b54fa0e514a3c0acf82d2a7bc6ec4eb7074cc950683
sha512: 0955e9ee1a2f852fb06a4c5b3e7d0b8801c15a3341ee672d10eb99cf4b9d479ac5d74245beb79d4b10e6a7912a691c913bf5234d9bf520fc2fc648fc7dd97466
ssdeep: 384:yhdqqkX5q6VEeutdpwW0aCBzBF4eROgeJrd3Ig5Bp+ehAikXn04d4:yaOtPj6BFITJlfAikXhd4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19EB2A7A2E2480AF0EC7707B999775E0A0667FF79E871AB5E548970355F732E20063E13
sha3_384: 339f438971f1e4763cad1d42fd29feec66228484fb29ffe466278a70b840aff775b083aa86a4f7dd7e492c0f4fc38d5a
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-07-14 10:10:11

Version Info:

Translation: 0x0000 0x04b0
Comments: Google Update Setup
CompanyName: Google Inc.
FileDescription: Google Update Setup
FileVersion: 1.3.33.17
InternalName: Hkkkuq.exe
LegalCopyright: Copyright 2007-2010 Google Inc.
LegalTrademarks:
OriginalFilename: Hkkkuq.exe
ProductName: Google Update
ProductVersion: 1.3.33.17
Assembly Version: 1.3.33.17

MSIL/TrojanDownloader.Agent.MIA also known as:

BkavW32.AIDetectNet.01
CynetMalicious (score: 100)
CyrenW32/MSIL_Kryptik.HIU.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.MIA
APEXMalicious
KasperskyUDS:Trojan.MSIL.Injuke.gen
AvastDropperX-gen [Drp]
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmUDS:Trojan.MSIL.Injuke.gen
MalwarebytesTrojan.MalPack.GS
RisingTrojan.Generic/MSIL@AI.90 (RDM.MSIL:GY0Q/GY8C1hNCS8FECrEDw)
IkarusTrojan.MSIL.Inject
BitDefenderThetaGen:NN.ZemsilCO.34786.bm0@aW3afYg
AVGDropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove MSIL/TrojanDownloader.Agent.MIA?

MSIL/TrojanDownloader.Agent.MIA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment