Trojan

How to remove “Trojan-PSW.MSIL.Agensla.kej”?

Malware Removal

The Trojan-PSW.MSIL.Agensla.kej is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.MSIL.Agensla.kej virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Steals private information from local Internet browsers
  • Network activity detected but not expressed in API logs
  • Checks the CPU name from registry, possibly for anti-virtualization

How to determine Trojan-PSW.MSIL.Agensla.kej?


File Info:

crc32: 43C29BCD
md5: 65ea5594ddf4968baa26cc3dddfa0db0
name: vbc.exe
sha1: a4fab59a1da577bbd4b929d31cdca32279dd0dee
sha256: 1334290e2e59bc9e53b20732cd9403a683aadce734ca1c5db4030309b74adae0
sha512: 23d29813b2ab79502743aa328f854b83639770f9294540da41dd7ffac000571832c8238c403905ab0978fc39b9154056f7c0550c1dc0d5bb6b6199f82140de9d
ssdeep: 49152:Ou0c++OCvkGs9Fa9O/0J7FE8dNWxJ/jBxaq/FDjJY:RB3vkJ9Sq/prdFfJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Trojan-PSW.MSIL.Agensla.kej also known as:

MicroWorld-eScanTrojan.AutoIT.Agent.AAJ
McAfeeArtemis!65EA5594DDF4
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 0055f86c1 )
BitDefenderTrojan.GenericKD.42302420
K7GWTrojan ( 0055f86c1 )
Cybereasonmalicious.a1da57
Invinceaheuristic
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.Autoit.EZK
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-PSW.MSIL.Agensla.kej
AlibabaTrojan:Win32/autoit.ali2000008
RisingTrojan.Obfus/Autoit!1.C045 (CLASSIC)
EmsisoftTrojan.GenericKD.42302420 (B)
F-SecureTrojan.TR/Autoit.quwrj
DrWebTrojan.Inject3.33772
TrendMicroTrojan.Win32.WACATAC.THABHBO
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.65ea5594ddf4968b
SophosMal/Generic-S
IkarusTrojan-Spy.Keylogger.AgentTesla
CyrenW32/Trojan.LLSV-8189
AviraTR/Autoit.quwrj
FortinetAutoIt/Injector.EYX!tr
Endgamemalicious (high confidence)
ArcabitTrojan.AutoIT.Agent.AAJ
ZoneAlarmTrojan-PSW.MSIL.Agensla.kej
MicrosoftTrojan:Win32/Predator.BC!MTB
MAXmalware (ai score=100)
TrendMicro-HouseCallTrojan.Win32.WACATAC.THABHBO
eGambitUnsafe.AI_Score_70%
GDataTrojan.AutoIT.Agent.AAJ
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/HEUR/QVM10.2.E00D.Malware.Gen

How to remove Trojan-PSW.MSIL.Agensla.kej?

Trojan-PSW.MSIL.Agensla.kej removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment