Msil/Spy. Agent. Bsj

What is MSIL/Spy.Agent.BSJ infection?

In this article you will locate concerning the meaning of MSIL/Spy.Agent.BSJ and also its negative influence on your computer system. Such ransomware are a form of malware that is elaborated by online frauds to require paying the ransom by a victim.

In the majority of the situations, MSIL/Spy.Agent.BSJ infection will advise its targets to launch funds move for the objective of counteracting the modifications that the Trojan infection has actually introduced to the victim’s gadget.

MSIL/Spy.Agent.BSJ Summary

These adjustments can be as adheres to:

  • Network activity detected but not expressed in API logs;
  • Ciphering the papers located on the victim’s hard drive — so the sufferer can no more utilize the information;
  • Preventing routine accessibility to the victim’s workstation;

MSIL/Spy.Agent.BSJ

One of the most regular networks through which MSIL/Spy.Agent.BSJ are infused are:

  • By means of phishing e-mails;
  • As an effect of user winding up on a source that hosts a malicious software;

As soon as the Trojan is effectively infused, it will either cipher the information on the sufferer’s computer or prevent the device from operating in an appropriate fashion – while also placing a ransom note that states the demand for the victims to effect the payment for the objective of decrypting the files or recovering the documents system back to the preliminary condition. In the majority of circumstances, the ransom money note will show up when the client reboots the PC after the system has actually currently been damaged.

MSIL/Spy.Agent.BSJ distribution networks.

In various corners of the world, MSIL/Spy.Agent.BSJ grows by leaps as well as bounds. However, the ransom notes and also methods of obtaining the ransom quantity may differ depending upon specific neighborhood (local) setups. The ransom notes and tricks of extorting the ransom money quantity may vary depending on specific regional (local) setups.

For example:

    Faulty signals concerning unlicensed software application.

    In particular locations, the Trojans frequently wrongfully report having actually found some unlicensed applications enabled on the victim’s gadget. The sharp after that requires the individual to pay the ransom money.

    Faulty statements concerning illegal web content.

    In countries where software program piracy is less prominent, this approach is not as efficient for the cyber frauds. Conversely, the MSIL/Spy.Agent.BSJ popup alert may falsely declare to be deriving from a law enforcement institution as well as will report having situated child pornography or other illegal information on the device.

    MSIL/Spy.Agent.BSJ popup alert may wrongly assert to be deriving from a law enforcement establishment as well as will report having situated youngster pornography or various other illegal information on the tool. The alert will likewise include a demand for the user to pay the ransom money.

Technical details

File Info:

crc32: EB121990md5: a5c4969bb9b5bae97a18fc3fe0d9fc61name: A5C4969BB9B5BAE97A18FC3FE0D9FC61.mlwsha1: 484cdff74aec6b64837f45d974d02cd690942b86sha256: b7c2756f29cea1c28ccbc1cccbab8998774503fcb416acba2bfe96b1231dd86esha512: 21acefed104d1a933e5ab8e2ce304ada18c403732d0a643fd7d33d6ba64173de6488fcb6438a0c219e619359c9a235204cfddbfd8d267385e21ff87b1fa3a7bdssdeep: 12288:DD4UyFqw3klE1fIQO9tzCyg+j4LkE/Q8u2DE8LiS6/cCHPhKeRcuru:DdyFqKYEdInX8qsiSr4ZHcurutype: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0LegalCopyright: Copyright xa9 2018Assembly Version: 1.0.0.0InternalName: Stub.exeFileVersion: 1.0.0.0CompanyName: DeviLComments: Windows ServisleriProductName: WindowsServicesProductVersion: 1.0.0.0FileDescription: Windows ServicesOriginalFilename: Stub.exe

MSIL/Spy.Agent.BSJ also known as:

GridinSoftTrojan.Ransom.Gen
K7AntiVirusSpyware ( 0053e5751 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious ()
ALYacGeneric.Ransom.CloudSword.5911F368
CylanceUnsafe
ZillyaTrojan.Generic.Win32.109254
SangforRansom.MSIL.Stupid.G
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:MSIL/Stupid.611ba982
K7GWSpyware ( 0053e5751 )
Cybereasonmalicious.bb9b5b
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.BSJ
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.CloudSword.5911F368
NANO-AntivirusTrojan.Win32.Ric.fhyafn
MicroWorld-eScanGeneric.Ransom.CloudSword.5911F368
TencentWin32.Trojan.Spy.Lnxs
Ad-AwareGeneric.Ransom.CloudSword.5911F368
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34790.Pm1@aSlQH2o
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.a5c4969bb9b5bae9
EmsisoftGeneric.Ransom.CloudSword.5911F368 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.dzdak
AviraTR/Spy.Gen
MicrosoftRansom:MSIL/Stupid.G!MTB
GDataGeneric.Ransom.CloudSword.5911F368
AhnLab-V3Trojan/Win32.Kryptik.C3143397
McAfeeArtemis!A5C4969BB9B5
MAXmalware (ai score=100)
MalwarebytesTrojan.Agent
PandaTrj/GdSda.A
YandexTrojan.Agent!AmunWMyYr74
IkarusTrojan.MSIL.Spy
FortinetMSIL/Agent.BSJ!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360HEUR/QVM03.0.0865.Malware.Gen
Marcus Vance

Marcus Vance

Cybersecurity & Digital Privacy Researcher

Marcus Vance is a cybersecurity auditor and technology writer dedicated to educating the public about online safety, data privacy regulations, enterprise security, and emerging cyber threats.

Share this article
Twitter Facebook Pinterest