Spy Trojan

Trojan-Spy.MSIL.Agent.abgy (file analysis)

Malware Removal

The Trojan-Spy.MSIL.Agent.abgy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.MSIL.Agent.abgy virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image

How to determine Trojan-Spy.MSIL.Agent.abgy?


File Info:

crc32: 7150E287
md5: 5d8a7b6067e26724a9b6962f3a4c6327
name: 5D8A7B6067E26724A9B6962F3A4C6327.mlw
sha1: 7801bc8f0417c3a62699a4d3574c64697b1f964b
sha256: 8d9a1a56bc9210f7d1d1b0b9f88dadea337921e6c0ccc84af0d0a8f5811632d9
sha512: d9522240663c8a0a38adb73b00d364654b87e9d19cfc56f2fad341eac76dd406b39a5ef7974aee0a8fc9e5e9e1ac3e18b9f953eb09d731277002d8107af80a62
ssdeep: 768:L55Xlmp1KSJ9m95msBcnEGywD7gvGXQnDHk7b6a50QnunuR8baRYXG35JdsXJYa:L5IKS9m98sqJQmR8baRYX2aJn+Iv
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 9.9.9.9
InternalName: hoikifthf.exe
FileVersion: 9.0.0.9
ProductVersion: 9.0.0.9
FileDescription: Windows
OriginalFilename: hoikifthf.exe

Trojan-Spy.MSIL.Agent.abgy also known as:

K7AntiVirusTrojan ( 0050b27f1 )
Elasticmalicious (high confidence)
DrWebTrojan.ClipBankerNET.5
CynetMalicious (score: 90)
ALYacTrojan.GenericKD.4799548
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanSpy:MSIL/ClipBanker.3fe5b225
K7GWTrojan ( 0050b27f1 )
Cybereasonmalicious.067e26
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/ClipBanker.AC
APEXMalicious
AvastWin32:Rootkit-gen [Rtk]
KasperskyTrojan-Spy.MSIL.Agent.abgy
BitDefenderTrojan.GenericKD.4799548
NANO-AntivirusTrojan.Win32.Agent.eoqxuy
MicroWorld-eScanTrojan.GenericKD.4799548
TencentMsil.Trojan-spy.Agent.Sysg
Ad-AwareTrojan.GenericKD.4799548
ComodoMalware@#1mktvsjrih86a
BitDefenderThetaGen:NN.ZemsilF.34608.dq0@aaGK6Ne
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.5d8a7b6067e26724
EmsisoftTrojan.GenericKD.4799548 (B)
AviraHEUR/AGEN.1103792
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:Win32/Bladabindi!ml
AegisLabTrojan.MSIL.Agent.l!c
GDataTrojan.GenericKD.4799548
McAfeeArtemis!5D8A7B6067E2
MAXmalware (ai score=81)
VBA32CIL.StupidPInvoker-1.Heur
PandaTrj/GdSda.A
RisingSpyware.Agent!8.C6 (CLOUD)
SentinelOneStatic AI – Malicious PE
FortinetMSIL/ClipBanker.BP!tr
AVGWin32:Rootkit-gen [Rtk]
Qihoo-360Win32/Rootkit.Generic.HgIASOQA

How to remove Trojan-Spy.MSIL.Agent.abgy?

Trojan-Spy.MSIL.Agent.abgy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment