Trojan

BAT/TrojanDownloader.Agent.OIR removal instruction

Malware Removal

The BAT/TrojanDownloader.Agent.OIR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BAT/TrojanDownloader.Agent.OIR virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine BAT/TrojanDownloader.Agent.OIR?


File Info:

crc32: 71A01395
md5: 4a53c91d743e8f9b6551893011d04966
name: 4A53C91D743E8F9B6551893011D04966.mlw
sha1: 04e949d7d92e86c07a1e0bc72ae39cf2f950f0d6
sha256: 243b5b84bb63e98fb3d54e4e1d8592c367540a79f677a464f2c2ea5491f4c90f
sha512: 5614a48c1007193c8b6425e7856d68aa60d8c7e2fc5a7875cb6ce92500e176b21584399eb38f1b34dda82e3880cbac1fca1882d09d8265df4107383e21c54d52
ssdeep: 3072:9ahKyd2n3135GWp1icKAArDZz4N9GhbkrNEkbY2rv:9ahO7p0yN90QEw
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: Wextract
FileVersion: 11.00.19041.1 (WinBuild.160101.0800)
CompanyName: Microsoft Corporation
ProductName: Internet Explorer
ProductVersion: 11.00.19041.1
FileDescription: Win32 Cabinet Self-Extractor
OriginalFilename: WEXTRACT.EXE
Translation: 0x0409 0x04b0

BAT/TrojanDownloader.Agent.OIR also known as:

LionicTrojan.Win32.Agentb.4!c
CynetMalicious (score: 100)
AlibabaTrojanDownloader:Win32/Agentb.135b8047
Cybereasonmalicious.7d92e8
SymantecTrojan.Gen.MBT
ESET-NOD32BAT/TrojanDownloader.Agent.OIR
APEXMalicious
AvastWin64:Malware-gen
KasperskyTrojan.Win32.Agentb.kmlg
TencentWin32.Trojan.Agentb.Pdmh
SophosMal/Generic-S
McAfee-GW-EditionBehavesLike.Win64.Dropper.ch
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Zpevdo.B
AhnLab-V3Malware/Win64.Generic.C4286717
McAfeeArtemis!4A53C91D743E
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agentb.KMLG!tr
AVGWin64:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Heur.Generic.H8oA96MA

How to remove BAT/TrojanDownloader.Agent.OIR?

BAT/TrojanDownloader.Agent.OIR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment