Trojan

MSIL/TrojanDropper.Agent.EZZ removal

Malware Removal

The MSIL/TrojanDropper.Agent.EZZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/TrojanDropper.Agent.EZZ virus can do?

  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine MSIL/TrojanDropper.Agent.EZZ?


File Info:

crc32: 91206060
md5: 787c05b282b3800b35abb729f87b72ea
name: 787C05B282B3800B35ABB729F87B72EA.mlw
sha1: e85ee22288cecf82dc9c1be0dadad8c9ec58f006
sha256: 7a9618a0b5b11482f53ba57d6262ad2c33f34437789786a47ad1a19712d387ed
sha512: f1e9bf199358e5b44e7b5ebc2ebeab13e8e9bc5558e0b103ff76412638b95042dfe4d85f5b7f16785200f19192624bf226e5cb9ccbb03cbef0216dd584e70f8e
ssdeep: 12288:Zh1Lk70Tnvjc1bGH3RMCRDGP1bKK+5Oms+344B:Fk70Trc1UMCsNu5OmbIu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Microsoft Corporation. All rights reserved.
Assembly Version: 11.0.9600.16428
InternalName: iexpress.exe
FileVersion: 11.0.9600.16428
ProductName: Internet Explorer
ProductVersion: 11.0.9600.16428
FileDescription: Wizard
OriginalFilename: iexpress.exe

MSIL/TrojanDropper.Agent.EZZ also known as:

DrWebTrojan.MulDrop8.35410
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.40473726
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.40386
AlibabaRansom:Win32/Blocker.197310d0
K7GWTrojan ( 0053b94a1 )
K7AntiVirusTrojan ( 0053b94a1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.EZZ
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.lfab
BitDefenderTrojan.GenericKD.40473726
NANO-AntivirusTrojan.Win32.Blocker.fhourz
MicroWorld-eScanTrojan.GenericKD.40473726
TencentWin32.Trojan.Falsesign.Aiim
Ad-AwareTrojan.GenericKD.40473726
SophosMal/Generic-S
ComodoMalware@#1i4fuslk557ua
BitDefenderThetaGen:NN.ZexaF.34608.Jq2@aCSxxMi
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.40473726
EmsisoftTrojan.GenericKD.40473726 (B)
SentinelOneStatic AI – Suspicious PE
eGambitPE.Heur.InvalidSig
Antiy-AVLTrojan[Ransom]/Win32.Blocker
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Generic.D269947E
AegisLabTrojan.Win32.Blocker.4!c
ZoneAlarmTrojan-Ransom.Win32.Blocker.lfab
GDataTrojan.GenericKD.40473726
Acronissuspicious
McAfeeArtemis!787C05B282B3
MAXmalware (ai score=100)
VBA32TrojanRansom.Blocker
MalwarebytesTrojan.Injector
PandaTrj/GdSda.A
RisingRansom.Blocker!8.12A (CLOUD)
YandexRiskware.BitMiner!4I5O1ky3JSc
IkarusTrojan-Dropper.MSIL.Agent
FortinetMSIL/Agent.DYL!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HwoC03sA

How to remove MSIL/TrojanDropper.Agent.EZZ?

MSIL/TrojanDropper.Agent.EZZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment