Trojan

Trojan.MSIL.Agent.qwimdz removal tips

Malware Removal

The Trojan.MSIL.Agent.qwimdz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MSIL.Agent.qwimdz virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.MSIL.Agent.qwimdz?


File Info:

name: 435829AF8114A32F1F1C.mlw
path: /opt/CAPEv2/storage/binaries/d02d53f75f060623d0560412a109b934286e5c89036c131314a793f11d2cd6a4
crc32: 7E7A8642
md5: 435829af8114a32f1f1ca92164a43232
sha1: c240069d3bb6fca1ad8bcbff2d75aecc907d0bc9
sha256: d02d53f75f060623d0560412a109b934286e5c89036c131314a793f11d2cd6a4
sha512: f9e09954adfe25f31faf06b6e2d6fc2f5b24c7ee7f01a880c8ba7a02f086b58742d689b93d00c1b115ba61bcb1da69ce40c2e0443a71e3e502a33bd576a0d9c0
ssdeep: 12288:1uQTHAy0PHlpeaDc40jsa/JctUcgkrurcNV/Y+HoFy0PHlzzkbY1oDJyHgU6y0PK:+jeaA40ZGUcgboY+HoPJzkb66nUcK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F0554968621B8802C49973FEDD0BEA92419CDFD5E4C6AD679034791AE431E2FCC19DCE
sha3_384: 2df2bf41d371eedbff3a26e02a55c630d57f1f8fdfec721462de51aae6f3cd77ef1ebfb5ddc00ae1f08092d09bf63eb8
ep_bytes: ff25002040005589e5578b7d106a0158
timestamp: 2022-06-18 09:11:28

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName: r2dispel.ru
FileDescription: Dispel
FileVersion: 2.0.0.0
InternalName: Dispel.exe
LegalCopyright: Copyright © 2022 Dispel
LegalTrademarks: r2dispel.ru
OriginalFilename: Dispel.exe
ProductName: r2dispel.ru
ProductVersion: 2.0.0.0
Assembly Version: 2.0.0.0

Trojan.MSIL.Agent.qwimdz also known as:

BkavW32.AIDetectNet.01
LionicTrojan.MSIL.Convagent.4!c
MicroWorld-eScanTrojan.GenericKD.61059911
FireEyeTrojan.GenericKD.61059911
ALYacTrojan.GenericKD.61059911
CylanceUnsafe
SangforTrojan.Win32.Agent.V0yi
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:MSIL/Generic.7aa518cc
K7GWRiskware ( 0040eff71 )
BitDefenderThetaGen:NN.ZemsilF.34592.tn0@amJD8cp
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
Paloaltogeneric.ml
KasperskyTrojan.MSIL.Agent.qwimdz
BitDefenderTrojan.GenericKD.61059911
AvastFileRepMalware
Ad-AwareTrojan.GenericKD.61059911
EmsisoftTrojan.GenericKD.61059911 (B)
VIPRETrojan.GenericKD.61059911
McAfee-GW-EditionArtemis
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataTrojan.GenericKD.61059911
Antiy-AVLTrojan/Generic.ASMalwS.814A
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.MSILMamut.C5220400
McAfeeArtemis!435829AF8114
MAXmalware (ai score=85)
VBA32Trojan.MSIL.Convagent
MalwarebytesMalware.AI.3774974
TrendMicro-HouseCallTROJ_GEN.R002H07GU22
RisingTrojan.Convagent!8.12323 (CLOUD)
MaxSecureTrojan.Malware.300983.susgen
AVGFileRepMalware
PandaTrj/Chgt.AD
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.MSIL.Agent.qwimdz?

Trojan.MSIL.Agent.qwimdz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment