Trojan

MSIL/TrojanDownloader.Agent.MP malicious file

Malware Removal

The MSIL/TrojanDownloader.Agent.MP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDownloader.Agent.MP virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine MSIL/TrojanDownloader.Agent.MP?


File Info:

crc32: CCFA301D
md5: ad0c63393eed49fc5fff38ccfec591b6
name: AD0C63393EED49FC5FFF38CCFEC591B6.mlw
sha1: 8b55313b8e62d40d8564abbdb9743d3ea89ebce6
sha256: 27ff908d2ba78341d069891ee70ce7f253bf301ed6cb835d606b6753b6f90ad9
sha512: 503e20e79369ab43d7bd75ed14f081da769cb5ac77e7723383d412b0dbef68e3bf26e75446a0bbf5af6c92db589c6ba03f44e1c696d90e3076862dee2b7f4ace
ssdeep: 3072:cRHEC2Oi8NXC797F8TBfFvj4bq5722hRQNPbqS1+YD1Ds:cyC2F8NXC796TB9vj482sRQNTD1vR
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: d.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: d.exe

MSIL/TrojanDownloader.Agent.MP also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan-Downloader ( 004bb40d1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
McAfeeArtemis!AD0C63393EED
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.13223
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:MSIL/Xpack.4d4a6547
K7GWTrojan-Downloader ( 004bb40d1 )
Cybereasonmalicious.93eed4
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.MP
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Malware.LuminosityLink-5710531-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Symmi.79220
NANO-AntivirusTrojan.Win32.Blocker.cmsunw
SUPERAntiSpywareTrojan.Agent/Gen-Autorun
MicroWorld-eScanGen:Variant.Symmi.79220
TencentMsil.Trojan-downloader.Agent.Lmkq
Ad-AwareGen:Variant.Symmi.79220
SophosMal/Generic-S
ComodoMalware@#22ctojzth1y2f
F-SecureHeuristic.HEUR/AGEN.1128470
BitDefenderThetaGen:NN.ZexaF.34608.oq0@aaLvzC
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0OB421
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.ad0c63393eed49fc
EmsisoftGen:Variant.Symmi.79220 (B)
WebrootW32.Backdoor.Gen
AviraHEUR/AGEN.1128470
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Occamy.C27
GridinsoftTrojan.Win32.Downloader.sa
ArcabitTrojan.Symmi.D13574
AegisLabTrojan.Win32.Blocker.j!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Symmi.79220
AhnLab-V3Downloader/Win32.Agent.C115940
VBA32Trojan.Bitrep
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0OB421
YandexTrojan.Blocker!MVRXP7y0DfY
IkarusTrojan-Crypt.Xpack
FortinetW32/Blocker.CTKC!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360HEUR/Malware.QVM10.Gen

How to remove MSIL/TrojanDownloader.Agent.MP?

MSIL/TrojanDownloader.Agent.MP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment