Trojan

About “Trojan.MSIL.Agent.qwirca” infection

Malware Removal

The Trojan.MSIL.Agent.qwirca is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MSIL.Agent.qwirca virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Trojan.MSIL.Agent.qwirca?


File Info:

name: E936E556430EDC7731AB.mlw
path: /opt/CAPEv2/storage/binaries/92bbe4fcc5805e6e212cde7a4b224046df2e360faebb54ca87595a16a92db86b
crc32: 2552163D
md5: e936e556430edc7731abcafdc4d5c1a4
sha1: b086cce23f2aef7253f09388777d090c004c6d6f
sha256: 92bbe4fcc5805e6e212cde7a4b224046df2e360faebb54ca87595a16a92db86b
sha512: dd0a4af7ffbbed20cd705f67a1bcdea0107fe65e74aafe96f85b93b0978691aa0b80a7b09bad041cf6f420d6acc35c83a69cc9b56b187fc95b36b5aa1161ad66
ssdeep: 1536:gsUEgZu1W8N/VbEdCWzpPNraCr+uz7Vo3u9sYhjQ8cHhaN5K11kFmu:gLZu1WEbmz7rpr+uv9sIQ8cHhe01y4
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T115B34B0537A308E3E08D87712866D2F014BDE9459F66E717E2C3827C8D9D78A261BBD7
sha3_384: cd1de1cafbf0f79b5c49eafe6873d7d252d1d9511afa75f8568131cfbe733a06625e0d6c50b5eadabbd2c3fbcf7f1bfc
ep_bytes: ff250461400000000000000000000000
timestamp: 2024-02-04 13:17:00

Version Info:

0: [No Data]

Trojan.MSIL.Agent.qwirca also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Agent.Y!c
MicroWorld-eScanTrojan.GenericKD.71511161
FireEyeTrojan.GenericKD.71511161
SkyhighArtemis
McAfeeArtemis!E936E556430E
Cylanceunsafe
AlibabaTrojan:MSIL/Generic.9efd383a
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.MSIL.Agent.qwirca
BitDefenderTrojan.GenericKD.71511161
AvastFileRepMalware [Misc]
EmsisoftTrojan.GenericKD.71511161 (B)
F-SecureTrojan.TR/Agent.loamv
VIPRETrojan.GenericKD.71511161
SophosMal/Generic-S
GDataTrojan.GenericKD.71511161
AviraTR/Agent.loamv
MAXmalware (ai score=87)
KingsoftMSIL.Trojan.Agent.qwirca
ArcabitTrojan.Generic.D4432C79
ZoneAlarmTrojan.MSIL.Agent.qwirca
ALYacTrojan.GenericKD.71511161
RisingTrojan.Agent!8.B1E (CLOUD)
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGFileRepMalware [Misc]
DeepInstinctMALICIOUS

How to remove Trojan.MSIL.Agent.qwirca?

Trojan.MSIL.Agent.qwirca removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment