Trojan

How to remove “Trojan.Agent.CXUZ”?

Malware Removal

The Trojan.Agent.CXUZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.CXUZ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Attempts to identify installed AV products by registry key
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Agent.CXUZ?


File Info:

crc32: 5C1FE441
md5: 6b88a82cf37d57d87f6d75351c121920
name: 6B88A82CF37D57D87F6D75351C121920.mlw
sha1: d2e0a3b5b5f65430f405d7b0f93848f803e9f694
sha256: 2379a0413c12c55ec653d114d66fdc7feab7b7ce01f689219140521fe6a385bc
sha512: 422a4c721d72f6df2897246818eb6a343c724924352614606f7ec4ce8c68130fb3a1a3712d49bf7c2a4a5fb0b542a112aaf69f9c3fb960947e56666ec155be70
ssdeep: 6144:vaJsRxEEKVUfwTPLFjfvLhg/qT/t3erZ5fBOPK8zGSRWlGyU10YfqLq7UmTlK8u:yJsrfAxz2yzxebfQPhRqGyKvg0KZNRk
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright Opera Software 2017
InternalName: Opera
FileVersion: 43.0.2442.1144
CompanyName: Opera Software
Translation: 0x0409 0x04b0

Trojan.Agent.CXUZ also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0052b7411 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen7.47799
CynetMalicious (score: 100)
CAT-QuickHealTjnPrxy.Bunitu.S2536507
ALYacTrojan.Agent.CXUZ
CylanceUnsafe
ZillyaTrojan.Yakes.Win32.68326
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0052b7411 )
Cybereasonmalicious.cf37d5
CyrenW32/Kryptik.COQ.gen!Eldorado
SymantecPacked.Generic.459
ESET-NOD32a variant of Win32/Kryptik.GEUV
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Bunitu-9890486-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Agent.CXUZ
NANO-AntivirusTrojan.Win32.Yakes.fahpag
MicroWorld-eScanTrojan.Agent.CXUZ
TencentMalware.Win32.Gencirc.10b82492
Ad-AwareTrojan.Agent.CXUZ
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanProxy.Bunitu.FG@7zez5j
BitDefenderThetaGen:NN.ZexaF.34294.Mq0@aG1sjPci
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.Win32.TRICKBOT.SMB.hp
McAfee-GW-EditionBehavesLike.Win32.Ransomware.jh
FireEyeGeneric.mg.6b88a82cf37d57d8
EmsisoftTrojan.Agent.CXUZ (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1109175
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.25C1C14
MicrosoftTrojanProxy:Win32/Bunitu.Q!bit
ArcabitTrojan.Agent.CXUZ
GDataTrojan.Agent.CXUZ
AhnLab-V3Malware/Win32.Generic.C2468598
Acronissuspicious
McAfeePacked-FCK!6B88A82CF37D
MAXmalware (ai score=95)
VBA32BScope.Trojan.Yakes
MalwarebytesMalware.AI.4031647231
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojanSpy.Win32.TRICKBOT.SMB.hp
RisingTrojan.Kryptik!1.B04B (CLASSIC)
YandexTrojan.GenAsa!oNusuVNCGK8
IkarusTrojan-Dropper.Win32.Bunitu
FortinetW32/Kryptik.GLWT!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Agent.CXUZ?

Trojan.Agent.CXUZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment