Malware

How to remove “Downloader.Win32.Agent.htrd”?

Malware Removal

The Downloader.Win32.Agent.htrd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Downloader.Win32.Agent.htrd virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Anomalous binary characteristics

Related domains:

p.iwin.com

How to determine Downloader.Win32.Agent.htrd?


File Info:

crc32: CD41D2B5
md5: f3d3a9975e55f1581eac023ec0108192
name: F3D3A9975E55F1581EAC023EC0108192.mlw
sha1: a1afa0c97f9744095b3385fcdc3f5f5b80b9a77c
sha256: 5b3d29bebc0c33994bb3783aec1e548f935e313969d947f21ecd5515aa2fecf2
sha512: 31c93ef490fa7ba6b97fd54ca59d58162a7879ad76022af9bbaf1ac84983c3c044705721959576d80bebeacea4d3647a9622480b7d8f27d28c3eb011051d3912
ssdeep: 1536:rLXB65939tY6HBg4sXJrAchXFahVjuoHLnVc0AchXFsOcVf2KEMZ82OG:rLk395hYXJrAcqJrnq0AcrMnZ82/
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: xa9 iWin inc.
FileVersion: 1.0.3.0
CompanyName: iWin inc.
ProductName: IPlayStreaming Games
ProductVersion: 1.0.3.0
FileDescription: IPlayStreaming Games Downloader
Translation: 0x0409 0x0000

Downloader.Win32.Agent.htrd also known as:

K7AntiVirusAdware ( 00549ca81 )
AlibabaDownloader:Win32/Generic.cf467b7d
K7GWAdware ( 00549ca81 )
Kasperskynot-a-virus:Downloader.Win32.Agent.htrd
SophosGeneric ML PUA (PUA)
AviraGAME/Downloader.Gen8
ZoneAlarmnot-a-virus:Downloader.Win32.Agent.htrd
CynetMalicious (score: 85)
AhnLab-V3Malware/Gen.Generic.C1854341
VBA32suspected of Trojan.Downloader.gen.h

How to remove Downloader.Win32.Agent.htrd?

Downloader.Win32.Agent.htrd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment