Trojan

Should I remove “Dropped:Trojan.Agent.ATYC”?

Malware Removal

The Dropped:Trojan.Agent.ATYC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Trojan.Agent.ATYC virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Dropped:Trojan.Agent.ATYC?


File Info:

name: 2085FCB14C6F55315485.mlw
path: /opt/CAPEv2/storage/binaries/9dfa355c2a2a56a4fefe35f2ed5de150ba92f715825fd33e38b0a1e9c044348f
crc32: A63F128C
md5: 2085fcb14c6f553154858aea31297159
sha1: 2e2f8958d19dc3878a93db9de2739bae94d9c262
sha256: 9dfa355c2a2a56a4fefe35f2ed5de150ba92f715825fd33e38b0a1e9c044348f
sha512: c8c2f25f45fc867f17a79fc13782e8db4584c243f2ec3d6108a78762369cf8c3bb757113fddc12a0fc3381c44d3491d5ed6d1d1bdfdfc51b05d1a66bd14085d2
ssdeep: 3072:IgXdZt9P6D3XJbCVSRp8s60iwgXcSXwRsdNRKA:Ie344gRKH0iDcS1R
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B4A3F11766C0DAB7C9E709311677B779F3BECB8902121A470B843F2D9E716838A152F5
sha3_384: defa0eca406ebb824c126cafb1abee24f12a9953bfb36d88de8730c1299c359f1e78e66b8c4df0d160101f418b8dcc01
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

0: [No Data]

Dropped:Trojan.Agent.ATYC also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Agent.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanDropped:Trojan.Agent.ATYC
FireEyeGeneric.mg.2085fcb14c6f5531
CAT-QuickHealRogue.Defmid.A
McAfeeArtemis!2085FCB14C6F
MalwarebytesTrojan.Dropper
ZillyaTrojan.Agent.Win32.1108811
SangforTrojan.Win32.FakeAlert.BNE
K7AntiVirusTrojan ( 0034c9d11 )
AlibabaTrojanDownloader:Win32/Tracur.8c46e4fe
K7GWTrojan ( 0034c9d11 )
Cybereasonmalicious.14c6f5
CyrenW32/FakeAlert.SQ.gen!Eldorado
SymantecPacked.Generic.354
ESET-NOD32multiple detections
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyTrojan-Clicker.Win32.Agent.vys
BitDefenderDropped:Trojan.Agent.ATYC
NANO-AntivirusTrojan.Win32.Agent.hqygp
AvastNSIS:Downloader-WM [Trj]
TencentWin32.Trojan.Agent.Snkl
Ad-AwareDropped:Trojan.Agent.ATYC
SophosMal/Zbot-EZ
ComodoMalware@#95lwmj6be4j6
DrWebTrojan.Click2.10941
VIPREDropped:Trojan.Agent.ATYC
TrendMicroTROJ_AGENT.NT
McAfee-GW-EditionGeneric FakeAV.ic
Trapminemalicious.high.ml.score
EmsisoftDropped:Trojan.Agent.ATYC (B)
SentinelOneStatic AI – Suspicious PE
GDataDropped:Trojan.Agent.ATYC
JiangminTrojanClicker.Agent.fap
WebrootW32.Trojan.Agent.Gen
AviraTR/Offend.7216723
Antiy-AVLTrojan/Generic.ASMalwS.13E
KingsoftWin32.Malware.Heur_Generic.A.(kcloud)
MicrosoftRogue:Win32/Defmid
GoogleDetected
AhnLab-V3Downloader/Win32.FraudLoad.R19765
BitDefenderThetaGen:NN.ZedlaF.34646.emSfam8Nmini
ALYacDropped:Trojan.Agent.ATYC
MAXmalware (ai score=100)
VBA32BScope.Worm.Cridex.2314
CylanceUnsafe
TrendMicro-HouseCallTROJ_AGENT.NT
RisingDownloader.FakeAlert!8.4FF (CLOUD)
IkarusTrojan-Dropper.Agent
FortinetW32/Yakes.B!tr
AVGNSIS:Downloader-WM [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Dropped:Trojan.Agent.ATYC?

Dropped:Trojan.Agent.ATYC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment