Trojan

PowerShell/TrojanDownloader.Agent.DCA removal tips

Malware Removal

The PowerShell/TrojanDownloader.Agent.DCA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PowerShell/TrojanDownloader.Agent.DCA virus can do?

  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests

Related domains:

z.whorecord.xyz
a.tomx.xyz
r4—sn-4g5e6nl6.gvt1.com
update.googleapis.com

How to determine PowerShell/TrojanDownloader.Agent.DCA?


File Info:

crc32: 229E24A1
md5: 3070c822be48d55529962471d08f2f37
name: upload_file
sha1: 96bb8a4c67c7d8f38cdf56b4adcfa88bdf88885e
sha256: a4ad27b6d0862a568795d08b3986cd697cfa0c3fd8a759c8af04cd4bf567ad58
sha512: 3cd0df087ffcb7a364df675d26bd49d8ca60757755506a9fb6d29b403245f99dcd3323828edb4fec059bb0f7f7f2299a791bcf351a0009508b5935ad0710198d
ssdeep: 48:bhrJZueAh8AW1vmfeHTQK5Hz15cMaXV+NDFeZogS1JeG4xV1jyxQLy5CysbS1bSy:bhrWKACvUibZZzkENZO6cxXy0y5Cyiob
type: ASCII text, with very long lines, with CRLF line terminators

Version Info:

0: [No Data]

PowerShell/TrojanDownloader.Agent.DCA also known as:

AegisLabTrojan.Script.SAgent.4!c
ArcabitTrojan.Generic.D29E6861
InvinceaJS/DwnLdr-AAHH
SymantecJS.Downloader
ESET-NOD32PowerShell/TrojanDownloader.Agent.DCA
TrendMicro-HouseCallTrojan.JS.POWLOAD.WEIQE
KasperskyHEUR:Trojan.Script.SAgent.gen
BitDefenderTrojan.GenericKD.43935841
MicroWorld-eScanTrojan.GenericKD.43935841
RisingDownloader.Agent!8.B23 (TOPIS:E0:DQtViUUttmH)
Ad-AwareTrojan.GenericKD.43935841
EmsisoftTrojan.GenericKD.43935841 (B)
ComodoMalware@#humdj5qef2uw
TrendMicroTrojan.JS.POWLOAD.WEIQE
FireEyeTrojan.GenericKD.43935841
SophosJS/DwnLdr-AAHH
ZoneAlarmHEUR:Trojan.Script.SAgent.gen
GDataTrojan.GenericKD.43935841
ALYacTrojan.JS.Downloader.Agent
MAXmalware (ai score=83)
IkarusTrojan-Downloader.PowerShell.Agent
PandaJs/Downloader.PTP
Qihoo-360virus.js.qexvmc.1

How to remove PowerShell/TrojanDownloader.Agent.DCA?

PowerShell/TrojanDownloader.Agent.DCA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment