Trojan

Trojan-PSW.MSIL.Agensla.mil malicious file

Malware Removal

The Trojan-PSW.MSIL.Agensla.mil is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.MSIL.Agensla.mil virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • The binary likely contains encrypted or compressed data.
  • Steals private information from local Internet browsers
  • Network activity detected but not expressed in API logs
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-PSW.MSIL.Agensla.mil?


File Info:

crc32: 1B0D0AA3
md5: 170b3c7b1daf0b4899d980c2bacb0656
name: 9.exe
sha1: b125dbec4bd09754f5dd106ffed28a0e3dd12fd8
sha256: 627e77da7aec0c80056c769878f454c5a2e306db21525f841ec2e7732c58333b
sha512: 6943a6d93fb4c3bcdab83cb0c7356cb486b5a1a2a61cc7a6156a8eb972033e1e2d0bfd6e39c42293e8ddf243e9c6e55ad3c025fd21b803d6b4eb307edb69e75c
ssdeep: 49152:xu0c++OCvkGs9FaUAAGNe3FkKIlXkBbxTYR+eeY:kB3vkJ9VzBpYR+7
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Trojan-PSW.MSIL.Agensla.mil also known as:

MicroWorld-eScanTrojan.GenericKD.33396348
FireEyeGeneric.mg.170b3c7b1daf0b48
McAfeeArtemis!170B3C7B1DAF
MalwarebytesTrojan.MalPack.AutoIt
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.MSIL.Agensla.i!c
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.33396348
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.c4bd09
TrendMicroTROJ_GEN.R002C0PBR20
CyrenW32/AutoIt.NS.gen!Eldorado
TrendMicro-HouseCallTROJ_GEN.R002C0PBR20
AvastScript:SNH-gen [Trj]
GDataTrojan.GenericKD.33396348
KasperskyTrojan-PSW.MSIL.Agensla.mil
AlibabaTrojan:Win32/autoit.ali2000008
NANO-AntivirusTrojan.Win32.Agensla.hcowfu
ViRobotTrojan.Win32.Z.Autoit.1611264.A
APEXMalicious
TencentMsil.Trojan-qqpass.Qqrob.Dvpz
Ad-AwareTrojan.GenericKD.33396348
SophosMal/Generic-S
F-SecureTrojan.TR/Autoit.abgav
DrWebTrojan.AutoIt.750
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.33396348 (B)
F-ProtW32/AutoIt.NS.gen!Eldorado
MaxSecureTrojan.Malware.300983.susgen
AviraTR/Autoit.abgav
MAXmalware (ai score=100)
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1FD967C
ZoneAlarmTrojan-PSW.MSIL.Agensla.mil
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Trojan/AU3.Wacatac.S1079
ALYacTrojan.GenericKD.33396348
CylanceUnsafe
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.Autoit.FCW
RisingTrojan.Obfus/Autoit!1.C045 (CLASSIC)
IkarusTrojan-AutoIt
FortinetAutoIt/Injector.ESJ!tr
AVGScript:SNH-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/HEUR/QVM10.2.8747.Malware.Gen

How to remove Trojan-PSW.MSIL.Agensla.mil?

Trojan-PSW.MSIL.Agensla.mil removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment