Malware

Should I remove “MSIL:Agent-AEM [Trj]”?

Malware Removal

The MSIL:Agent-AEM [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL:Agent-AEM [Trj] virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSIL:Agent-AEM [Trj]?


File Info:

crc32: 6F60893F
md5: 1714bb75ce5f5626d6d888a387e29187
name: coinpot.exe
sha1: 27705de8e0aea3cdb8c07b299a5fe10f9dfb381b
sha256: 0d6f7ba2d1ee7054fe5147fc81268aecef2c5a6dc809e61040f0df84f29a5bee
sha512: 0064f4deb798a356f931771d61603c9cc0a21be0c5f254ac63184782143d3cf41a7af8d5f03d00539ccbb9c913a88a49128941935aae28c8d62d55fc289c60a1
ssdeep: 6144:nTy46PsNNDFRklGF+sNNDFRklGFynC1FTy466WwlgggggK77777770EiHTy46:nx6k/R/yCrx664Hx6
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 CoinPot 2018
Assembly Version: 1.0.0.0
InternalName: coinpot.exe
FileVersion: 1.0.0.0
CompanyName: CoinPot
LegalTrademarks: CoinPot
Comments: CoinPot
ProductName: CoinPot
ProductVersion: 1.0.0.0
FileDescription: CoinPot
OriginalFilename: coinpot.exe

MSIL:Agent-AEM [Trj] also known as:

MicroWorld-eScanTrojan.GenericKD.6373994
McAfeeGeneric.cyc
BitDefenderTrojan.GenericKD.6373994
K7GWTrojan ( 0050f4f61 )
K7AntiVirusTrojan ( 0050f4f61 )
SymantecML.Attribute.HighConfidence
Paloaltogeneric.ml
GDataTrojan.GenericKD.6373994
KasperskyHEUR:Trojan.MSIL.Generic
NANO-AntivirusTrojan.Win32.Bladabindi.exaind
Ad-AwareTrojan.GenericKD.6373994
F-SecureTrojan.GenericKD.6373994
DrWebBackDoor.Bladabindi.13678
Invinceaheuristic
McAfee-GW-EditionGeneric.cyc
EmsisoftTrojan.GenericKD.6373994 (B)
IkarusTrojan.MSIL.Crypt
WebrootW32.Trojan.GenKD
AviraHEUR/AGEN.1008926
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D61426A
AegisLabTroj.Msil.Generic!c
ZoneAlarmHEUR:Trojan.MSIL.Generic
MicrosoftVirTool:MSIL/Injector
AhnLab-V3Trojan/Win32.Injector.C2365833
ALYacTrojan.GenericKD.6373994
AVwareTrojan.Win32.Generic!BT
VBA32TScope.Trojan.MSIL
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Kryptik.JIY
YandexTrojan.Agent!vCZrWkXXjuA
FortinetW32/Generic.JIY!tr
AVGMSIL:Agent-AEM [Trj]
AvastMSIL:Agent-AEM [Trj]
CrowdStrikemalicious_confidence_100% (W)

How to remove MSIL:Agent-AEM [Trj]?

MSIL:Agent-AEM [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment