Trojan

What is “Trojan.Agent.DAD”?

Malware Removal

The Trojan.Agent.DAD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.DAD virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Steals private information from local Internet browsers
  • Exhibits behavior characteristic of Pony malware
  • Collects information about installed applications
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed mail clients

How to determine Trojan.Agent.DAD?


File Info:

crc32: 8E4941FB
md5: 6e6012be01f734eee9dac6d6d83a1e5f
name: 6E6012BE01F734EEE9DAC6D6D83A1E5F.mlw
sha1: c9359bca7fb77012310458c76ed65849dc19d22a
sha256: b3699f22808a7a1edd9bc3f8e4a923cf174d5bb08054b3765afccd175d765d58
sha512: df596ba6eb1497977e10259140b5cbca2f10c5606edc886b61627508840ac7763a20aae0d6cccc5c32a6d883563a8ce3a6521ed01b5be13db0339130a8b35246
ssdeep: 12288:ohkDgouVA2nxKkorvdRgQriDwOIxmxiZnYQE7PJcE4aCdpdZ:QRmJkcoQricOIQxiZY1iaCdZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.DAD also known as:

MicroWorld-eScanTrojan.Generic.9593713
nProtectTrojan.Generic.9593713
CMCTrojan.Win32.Generic!O
CAT-QuickHealTrojanPWS.Fareit.r4
McAfeeRDN/Generic PWS.y!uv
MalwarebytesTrojan.Agent.DAD
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
NANO-AntivirusTrojan.Win32.Fareit.cgwgtn
SymantecTrojan.Zbot
NormanSuspicious_Gen5.AFYRY
TrendMicro-HouseCallTROJ_SPNV.03IO13
AvastWin32:Dropper-gen [Drp]
KasperskyTrojan-PSW.Win32.Fareit.afoj
BitDefenderTrojan.Generic.9593713
Ad-AwareTrojan.Generic.9593713
SophosMal/Generic-S
ComodoUnclassifiedMalware
F-SecureTrojan.Generic.9593713
DrWebTrojan.MulDrop5.7467
VIPRETrojan.Win32.Generic!BT
AntiVirTR/PSW.Fareit.afoj
TrendMicroTROJ_SPNV.03IO13
McAfee-GW-EditionRDN/Generic PWS.y!uv
EmsisoftTrojan.Generic.9593713 (B)
KingsoftWin32.PSWTroj.Fareit.af.(kcloud)
JiangminTrojan/Generic.bfmmy
MicrosoftPWS:Win32/Fareit
GDataTrojan.Generic.9593713
CommtouchW32/GenBl.6E6012BE!Olympus
VBA32TrojanPSW.Fareit
PandaTrj/CI.A
IkarusBackdoor.Win32.DarkKomet
FortinetW32/Fareit.AFOJ!tr.pws
Baidu-InternationalTrojan.Win32.InfoStealer.AdOF
Qihoo-360HEUR/Malware.QVM10.Gen

How to remove Trojan.Agent.DAD?

Trojan.Agent.DAD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment