Malware

AutoIt:Agent-DP [Trj] information

Malware Removal

The AutoIt:Agent-DP [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AutoIt:Agent-DP [Trj] virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself

How to determine AutoIt:Agent-DP [Trj]?


File Info:

crc32: D9D25E06
md5: 215ca70f46d72bd2feb7a592675965e2
name: 215CA70F46D72BD2FEB7A592675965E2.mlw
sha1: 85663a01ab405e993b17107387b2aad75637de99
sha256: df72f6b610ba3f1c996ebba2673f00986791cf26a69841e0bdcbbb55b6b80ded
sha512: f485c36912afcce02aabd90414d8261b7af8b2d2c6059c3fdf365ec8d1b471567174eee06d5033a057bf0819e805edd141229997a7b187217843bcb005f89272
ssdeep: 12288:mhkDgouVA2nxKkorvdRgQriDwOIxmxiZnYQE7PJcbNmS3c28:WRmJkcoQricOIQxiZY1WNmSs28
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

AutoIt:Agent-DP [Trj] also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055e3fd1 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader6.18661
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Skeeyah.S11718
ALYacTrojan.GenericKD.46532138
CylanceUnsafe
ZillyaTrojan.AutoIT.Win32.13710
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0055e3fd1 )
Cybereasonmalicious.f46d72
BaiduWin32.Trojan.AutoIt.a
CyrenW32/AutoIt.AQ2.gen!Eldorado
SymantecW32.SillyFDC
ESET-NOD32multiple detections
APEXMalicious
AvastAutoIt:Agent-DP [Trj]
ClamAVWin.Malware.Autoit-6991628-0
KasperskyTrojan.Win32.Autoit.aza
BitDefenderTrojan.GenericKD.46532138
NANO-AntivirusTrojan.Script.AutoIt.dbycya
MicroWorld-eScanTrojan.GenericKD.46532138
Ad-AwareTrojan.GenericKD.46532138
SophosML/PE-A + Mal/Sohana-A
ComodoTrojWare.Win32.Agent.AZAB@59q48x
BitDefenderThetaAI:Packer.FCE2514219
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.jh
FireEyeGeneric.mg.215ca70f46d72bd2
EmsisoftTrojan.GenericKD.46532138 (B)
JiangminTrojan.Autoit.ftqt
AviraTR/AutoIt.axovq
Antiy-AVLGrayWare/Autoit.Wacatac.a
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.GenericKD.46532138
AhnLab-V3HEUR/Fakon.mwf.X1381
Acronissuspicious
McAfeeW32/Worm-FMA!215CA70F46D7
MAXmalware (ai score=83)
VBA32Trojan.Autoit.Wirus
MalwarebytesGeneric.Trojan.Malicious.DDS
RisingMalware.FakeFolder/ICON!1.6AA9 (CLASSIC)
IkarusTrojan.Win32.Autoit
FortinetW32/Autoit.NLQ!tr
AVGAutoIt:Agent-DP [Trj]

How to remove AutoIt:Agent-DP [Trj]?

AutoIt:Agent-DP [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment