Trojan

Should I remove “Trojan.Agent.DHCR”?

Malware Removal

The Trojan.Agent.DHCR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.DHCR virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Trojan.Agent.DHCR?


File Info:

name: 01E0A411D552DD07A319.mlw
path: /opt/CAPEv2/storage/binaries/6b2d705f56d3961ece850d8f06fd36497d03febac92e445d8763306fb09fd92b
crc32: 13170C79
md5: 01e0a411d552dd07a3191542cae7d6b7
sha1: 1120adf2943e745e1ed13ae28bca7817681d8b1f
sha256: 6b2d705f56d3961ece850d8f06fd36497d03febac92e445d8763306fb09fd92b
sha512: 9e7ea0f5cf8d79c59756146a3519c02b59c36a2c8c7d86dbc8ed2b73213f9b157ddc7122310fecd72948b8a2b33c82636602a6f956900dc81cdb86a8e93d6022
ssdeep: 3072:7vEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6uK2/p0:7vEN2U+T6i5LirrllHy4HUcMQY6Bf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EB24192FBE54312EE86396F0082664A6B6262E751FC2AC4F53C06F4A34B1917B5F531F
sha3_384: b39929c72a66b2f60df09274dc0e12c98a7b3f79211e540a09685240a88abae0208366117f440d4faf785ef0b3df4b60
ep_bytes: 68d43e4000e8f0ffffff000040000000
timestamp: 2011-06-14 19:01:16

Version Info:

Translation: 0x0409 0x04b0
CompanyName: Microsoft
ProductName: Win
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Win
OriginalFilename: Win.exe

Trojan.Agent.DHCR also known as:

BkavW32.AIDetectMalware
AVGWin32:VB-AJKP [Trj]
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Agent.DHCR
ALYacTrojan.Agent.DHCR
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.Agent.DHCR
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 00092db21 )
K7GWTrojan ( 00092db21 )
Cybereasonmalicious.2943e7
BaiduWin32.Trojan.VB.at
CyrenW32/S-16107dfe!Eldorado
SymantecW32.Gosys
Elasticmalicious (high confidence)
ESET-NOD32Win32/VB.OSK
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Swisyn-7610494-0
KasperskyTrojan.Win32.Swisyn.bner
BitDefenderTrojan.Agent.DHCR
NANO-AntivirusTrojan.Win32.Swisyn.jzgodb
SUPERAntiSpywareBackdoor.Generic/Variant
AvastWin32:VB-AJKP [Trj]
TencentTrojan.Win32.Swisyn.b
EmsisoftTrojan.Agent.DHCR (B)
F-SecureTrojan.TR/Patched.Ren.Gen
DrWebTrojan.Siggen6.54687
ZillyaTrojan.Swisyn.Win32.34993
TrendMicroPE_MOFKSYS.A-O
McAfee-GW-EditionBehavesLike.Win32.Swisyn.dh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.01e0a411d552dd07
SophosTroj/VB-JVT
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE1.RJRM5X
JiangminTrojan/Swisyn.rmj
WebrootW32.Trojan.Gen
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.Swisyn.bner
XcitiumTrojWare.Win32.Trojan.XPACK.Gen@2ho5ur
ArcabitTrojan.Agent.DHCR
ZoneAlarmTrojan.Win32.Swisyn.bner
MicrosoftPWS:Win32/VB.CU
GoogleDetected
AhnLab-V3Trojan/Win32.Swisyn.R259306
Acronissuspicious
VBA32Trojan.VB.01049
TACHYONTrojan/W32.VB-Swisyn.221804
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallPE_MOFKSYS.A-O
RisingTrojan.VB!1.6519 (CLASSIC)
IkarusTrojan.Win32.VB
MaxSecureTrojan.W32.Swisyn.bner
FortinetW32/VB.QOT!tr
BitDefenderThetaAI:Packer.BD605B1C20
ZonerTrojan.Win32.47063
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Agent.DHCR?

Trojan.Agent.DHCR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment