Trojan

What is “Trojan.Agent.Bayrob”?

Malware Removal

The Trojan.Agent.Bayrob is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.Bayrob virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan.Agent.Bayrob?


File Info:

crc32: 9C93A9F5
md5: b1e94b638e8b643876ca98c20c7c9040
name: vvvv.exe
sha1: 88676b61f2aa14b044f582daec1ae013f262f592
sha256: dae388e44ab516663566b9b575e19c00cdd714b8800150b7c5d739f5c46f9d72
sha512: 5f58ebc7c5a734623db39f883b6d9a65fbbe672b4415ab9e72bba2bed8cc6cdcaeeb93532674276bb3a6af745703e1719b0c1943a702e5b28e1d908c39007713
ssdeep: 24576:/m1SN5j+DMVLM2HdMkTT8QRqDfQHRv6tMluYo9No08qzdkonQXagFt2NsikakP:/bNzVMydvXkcHRytQuzl8od9QJMkP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C)OPSWAT, Inc.
InternalName: Marketed Profiles
CompanyName: OPSWAT, Inc.
FileDescription: Johal Potential Meeting
ProductName: Marketed Profiles
ProductVersion: 1.4.5.75
PrivateBuild: 1.4.5.75
Translation: 0x0409 0x04b0

Trojan.Agent.Bayrob also known as:

BkavW32.AIDetectVM.malware
DrWebTrojan.Inject3.36641
MicroWorld-eScanTrojan.GenericKD.33559543
FireEyeGeneric.mg.b1e94b638e8b6438
McAfeeArtemis!B1E94B638E8B
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.33559543
K7GWRiskware ( 0040eff71 )
TrendMicroMal_HPGen-37b
BitDefenderThetaGen:NN.ZexaF.34104.Xr0@ai@Tpsbi
CyrenW32/Trojan.VKYH-3403
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
GDataTrojan.GenericKD.33559543
KasperskyTrojan.Win32.CMY3U.bud
AlibabaTrojan:Application/Carberp.03e49d58
ViRobotTrojan.Win32.Z.Wacatac.1851392
AvastWin32:Trojan-gen
TencentWin32.Trojan.Cmy3u.Pgcv
Ad-AwareTrojan.GenericKD.33559543
SophosMal/Generic-S
F-SecureTrojan.TR/AD.Carberp.nutat
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKD.33559543 (B)
IkarusTrojan.Win32.Bayrob
AviraTR/AD.Carberp.nutat
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D20013F7
ZoneAlarmTrojan.Win32.CMY3U.bud
MicrosoftTrojan:Win32/Occamy.C
Acronissuspicious
ALYacTrojan.Agent.Bayrob
MAXmalware (ai score=82)
MalwarebytesTrojan.MalPack
ESET-NOD32a variant of Generik.DLCLCBM
TrendMicro-HouseCallMal_HPGen-37b
RisingTrojan.Generic@ML.90 (RDML:fyWmuQXLelG66xBRHibymg)
eGambitUnsafe.AI_Score_100%
FortinetW32/Generik.DLCLCBM!tr
AVGWin32:Trojan-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.427

How to remove Trojan.Agent.Bayrob?

Trojan.Agent.Bayrob removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment