Trojan

MSIL/TrojanDownloader.Agent.MJQ removal

Malware Removal

The MSIL/TrojanDownloader.Agent.MJQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.MJQ virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine MSIL/TrojanDownloader.Agent.MJQ?


File Info:

name: 0E183EE7E572E3D64EED.mlw
path: /opt/CAPEv2/storage/binaries/db6e6dc05a1e09dce10e0fca7be853898b51341c05a7db10d7e5ddecba58536e
crc32: F394A23B
md5: 0e183ee7e572e3d64eed812b8f513f12
sha1: 3ccc4dfcafff2680f377f384ccf8ce44d4caf5a0
sha256: db6e6dc05a1e09dce10e0fca7be853898b51341c05a7db10d7e5ddecba58536e
sha512: 5a1dbe9e79bb7988f981319e59606f73d931411885e014092c84d3ca07516dc806e73e81f13a907d8a4ceccef5083621f25faeb6e9d0a49f86d60af56f6df52b
ssdeep: 768:SwVTN00CvdZuUia0OBfic1Qaya0uSCUNaxo6Ughk0fASwg:7TN00CvdZri3cGI0VNaepFSR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13DF23C0873E4A92FDA7FD67282F022813672D54B3702D7AE5EC742985D67FD00918BA7
sha3_384: b4bc5d728859f3e0078abc825a922a15d83976590dad16e6a2613e6d7d4f05e5fa317d69f247d2933fcdb5d99c081797
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-06-30 10:04:18

Version Info:

Translation: 0x0000 0x04b0
Comments: NeroAndKahveDunyasiCustomerManagement
FileDescription: NeroAndKahveDunyasiCustomerManagement
FileVersion: 1.0.0.0
InternalName: zQLTr646464.exe
LegalCopyright: NeroAndKahveDunyasiCustomerManagement Copyright © 2016
OriginalFilename: zQLTr646464.exe
ProductName: NeroAndKahveDunyasiCustomerManagement
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/TrojanDownloader.Agent.MJQ also known as:

LionicTrojan.MSIL.Stealer.l!c
MicroWorld-eScanTrojan.GenericKD.49276570
FireEyeTrojan.GenericKD.49276570
ALYacTrojan.GenericKD.49276570
CylanceUnsafe
SangforDownloader.Msil.Agent.Vmz8
K7AntiVirusTrojan-Downloader ( 00594d9f1 )
AlibabaTrojan:MSIL/Generic.def6d735
K7GWTrojan-Downloader ( 00594d9f1 )
Cybereasonmalicious.cafff2
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.MJQ
TrendMicro-HouseCallTROJ_GEN.R002H0DFU22
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderTrojan.GenericKD.49276570
AvastWin32:RATX-gen [Trj]
RisingBackdoor.Bladabindi!8.B1F (CLOUD)
Ad-AwareTrojan.GenericKD.49276570
DrWebTrojan.DownLoader45.2365
VIPRETrojan.GenericKD.49276570
SentinelOneStatic AI – Malicious PE
EmsisoftTrojan.GenericKD.49276570 (B)
APEXMalicious
GDataTrojan.GenericKD.49276570
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.C5187606
McAfeeArtemis!0E183EE7E572
MAXmalware (ai score=83)
MalwarebytesTrojan.Downloader
TencentMsil.Trojan-downloader.Agent.Fsa
FortinetMSIL/Agent.MIM!tr.dldr
AVGWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove MSIL/TrojanDownloader.Agent.MJQ?

MSIL/TrojanDownloader.Agent.MJQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment