Netskope Threat Labs

MSIL.Agent

ATP Sandbox Adv. HeuristicsAV

This generic detection identifies .NET based malware that performs unauthorized actions on infected systems, without attributing it to a specific family.

First seen
February 2022
Last seen
October 2026
MSILAgentMsil.Agent
Alert Name
Backdoor.MSIL.Agent.GD
Backdoor.MSIL.Agent.IU
Gen:Heur.MSIL.Agent.21
Gen:Variant.MSIL.Agent.1
Gen:Variant.MSIL.Agent.14
Trojan.MSIL.Agent.AOL
Trojan.MSIL.Agent.AQQ
Trojan.MSIL.Agent.ARR
Trojan.MSIL.Agent.ASF
Trojan.MSIL.Agent.ASV