Trojan

What is “Trojan.Agent.DFTP”?

Malware Removal

The Trojan.Agent.DFTP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.DFTP virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan.Agent.DFTP?


File Info:

crc32: 8EBA6A18
md5: 4a9e1d36f508528eeab8b1ce27b53abb
name: 4A9E1D36F508528EEAB8B1CE27B53ABB.mlw
sha1: f2bf484de15589ccb508ac33e3047f9d04d125fe
sha256: 1a1dfe58cb7837d62d9f555707b98ff0930e19dd959b10e6f7d1c9c4f919ab0f
sha512: f38c193a37f9f13a883289a1bed423925cd46d8329fda999b7647ded70178eec6c5ef394983cf84c5f67463acafb3c08e8603447a48a38bc71c03854a6919a3a
ssdeep: 6144:72yB9vqp1dVHrpLm3efYzGKupLDKCShmBDMHf6EhsLqyQJoZ9s7V:w1dVLp63efY4pnTESA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa92013 LogiGear Brought, Inc. All Rights Reserved
InternalName: Properthird.exe
FileVersion: 1.1.74.74
CompanyName: LogiGear Brought
ProductName: Properthird
ProductVersion: 1.1.74.74
FileDescription: Properthird
Translation: 0x0409 0x04e4

Trojan.Agent.DFTP also known as:

K7AntiVirusTrojan ( 0053df611 )
LionicTrojan.Win32.Ursnif.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader27.7217
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Agent.S3889117
ALYacTrojan.Agent.DFTP
CylanceUnsafe
ZillyaTrojan.Ursnif.Win32.2523
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaTrojanSpy:Win32/Ursnif.cb5c17e1
K7GWTrojan ( 0053df611 )
Cybereasonmalicious.6f5085
CyrenW32/S-ff0becab!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GLIE
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Malware.Dftp-6706182-0
KasperskyTrojan-Spy.Win32.Ursnif.aacs
BitDefenderTrojan.Agent.DFTP
NANO-AntivirusTrojan.Win32.GenKryptik.finhwu
MicroWorld-eScanTrojan.Agent.DFTP
TencentMalware.Win32.Gencirc.10b10d3c
Ad-AwareTrojan.Agent.DFTP
SophosMal/Generic-S + Mal/Zbot-UU
ComodoTrojWare.Win32.Agent.ZDN@7vtnrb
BitDefenderThetaGen:NN.ZexaF.34236.Rq0@aqmeEfoi
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.Win32.URSNIF.SMKA0.hp
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
FireEyeGeneric.mg.4a9e1d36f508528e
EmsisoftTrojan.Agent.DFTP (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanSpy.Ursnif.bor
WebrootW32.Trojan.Emotet
AviraHEUR/AGEN.1122921
Antiy-AVLTrojan/Generic.ASMalwS.284575B
MicrosoftTrojanSpy:Win32/Ursnif
ArcabitTrojan.Agent.DFTP
ZoneAlarmTrojan-Spy.Win32.Ursnif.aacs
GDataTrojan.Agent.DFTP
TACHYONTrojan/W32.Agent.708608.XV
AhnLab-V3Trojan/Win.Emotet.R437444
Acronissuspicious
McAfeeTrojan-FQEW!4A9E1D36F508
MAXmalware (ai score=100)
VBA32TrojanSpy.Ursnif
MalwarebytesTrojan.MalPack
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojanSpy.Win32.URSNIF.SMKA0.hp
RisingTrojan.Generic@ML.100 (RDML:wXf5J96luWIidG/aYQE3iw)
YandexTrojan.GenAsa!pJtKp8q+8v8
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.DVLO!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Agent.DFTP?

Trojan.Agent.DFTP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment