Trojan

What is “MemScan:Trojan.Agent.FBWD (B)”?

Malware Removal

The MemScan:Trojan.Agent.FBWD (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MemScan:Trojan.Agent.FBWD (B) virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine MemScan:Trojan.Agent.FBWD (B)?


File Info:

name: A28BE1AF4A9A33025899.mlw
path: /opt/CAPEv2/storage/binaries/946d3ff63f94dc762fdec0b36dfefd413de0dee27bba35cf6bb71b51a171fa1f
crc32: 8F3863F1
md5: a28be1af4a9a330258992c6db95c95ad
sha1: 26915cd545dbce80dbdaee6a1c3a117f92340981
sha256: 946d3ff63f94dc762fdec0b36dfefd413de0dee27bba35cf6bb71b51a171fa1f
sha512: e3c8a1d9b484ac609e1de29d91b3f743864aff3c78459c370c4a94afd68db8634acf4c5fb6452a856fb4cf594a1a554495dfecfbf7afa4f2ed9284163a4b247a
ssdeep: 1536:uvQBeOGtrYSSsrc93UBIfdC67m6AJiq8CtbKPB1or4I8xf:uhOm2sI93UufdC67ci4t251U1Q
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A8E3C5B20F7DE2B7E6B0E8204AB55164188AB67759C62AF450F513880F79CC29DC2D7F
sha3_384: 05b8f203a741307c5451181e2f68188d39f019aeb80e611058467a739779cd35ba5809fb88ec75115c425c19f9af9d72
ep_bytes: eb03c20c00558bec81ec00100000b800
timestamp: 2015-01-27 03:56:27

Version Info:

0: [No Data]

MemScan:Trojan.Agent.FBWD (B) also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Upatre.tomf
tehtrisGeneric.Malware
MicroWorld-eScanMemScan:Trojan.Agent.FBWD
FireEyeMemScan:Trojan.Agent.FBWD
CAT-QuickHealTrojan.Wacatac.A2.mue
McAfeeGenericRXNH-FD!A28BE1AF4A9A
Cylanceunsafe
ZillyaTrojan.AgentGen.Win32.81
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005003ac1 )
BitDefenderMemScan:Trojan.Agent.FBWD
K7GWTrojan ( 005003ac1 )
Cybereasonmalicious.f4a9a3
VirITTrojan.Win32.Inject1.DIGN
CyrenW32/BlackMoon.XHLQ-2097
SymantecTrojan Horse
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Dinwod-9828955-0
AlibabaTrojan:Win32/Injuke.16ec
TencentTrojan.Win32.GameteaSpy.a
EmsisoftMemScan:Trojan.Agent.FBWD (B)
DrWebTrojan.Inject1.58305
VIPREMemScan:Trojan.Agent.FBWD
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
SophosTroj/Agent-AVZX
IkarusTrojan-Dropper.Win32.Dinwod
GDataWin32.Packed.PSE.IYOAMV
JiangminTrojan.Generic.bfrch
MAXmalware (ai score=80)
Antiy-AVLGrayWare/Win32.BlackMoon.b
XcitiumTrojWare.Win32.Flooder.Agent.NAS@74ax2y
ArcabitTrojan.Agent.FBWD
MicrosoftTrojanDropper:Win32/Dinwod
GoogleDetected
AhnLab-V3Trojan/Win32.Dinwod.R203456
Acronissuspicious
VBA32Trojan.Inject
ALYacMemScan:Trojan.Agent.FBWD
TACHYONTrojan/W32.Blamon
DeepInstinctMALICIOUS
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
RisingTrojan.Agent!1.A4D8 (CLASSIC)
YandexTrojan.Agent!yy/3D2xYZE4
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Dinwod.EE7B!tr
AVGWin32:Injector-CVD [Trj]
AvastWin32:Injector-CVD [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove MemScan:Trojan.Agent.FBWD (B)?

MemScan:Trojan.Agent.FBWD (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment