Trojan

About “Trojan.Agent.EUZU” infection

Malware Removal

The Trojan.Agent.EUZU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.EUZU virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Agent.EUZU?


File Info:

crc32: B6B7373A
md5: 56f6aa9edaf342ff93b9959e43959bea
name: regasm.exe
sha1: 23039fb124f4a560d01f078078ab6b5bf0b626ae
sha256: 209a9092f39d420c7a9a9af3c8bae1183639ceb8089b5f07eca30db7b66f9fc6
sha512: ed43a1daff94c8a904701aa6c9e66f86bf125a698448ce6465bc708d29c4abef8a770fe658dbcbce60528e6f75edd6f7b04f47ca4a65455166ee4cb350043357
ssdeep: 12288:sJ7EaASsdqydLnshXlr0HUSm0bnPryYhHOeD9fZbED5RcE86wqMMO/:Q7pAtqydLmhFSm0rPryNMJD7S
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.EUZU also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.EUZU
FireEyeGeneric.mg.56f6aa9edaf342ff
CAT-QuickHealTrojan.Sigmal.S3205867
Qihoo-360Win32/Backdoor.BO.fce
ALYacTrojan.Agent.EUZU
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 0056c6e51 )
BitDefenderTrojan.Agent.EUZU
K7GWTrojan ( 0056c6e51 )
Cybereasonmalicious.edaf34
TrendMicroTROJ_GEN.R002C0DHE20
BitDefenderThetaGen:NN.ZelphiF.34186.VGX@aaCSFiai
F-ProtW32/Kryptik.AVR
SymantecInfostealer.Lokibot!43
ESET-NOD32a variant of Win32/Injector.ENAC
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Backdoor.Win32.NanoBot.gen
AlibabaTrojan:Win32/DelfInject.ali2000015
RisingBackdoor.NanoBot!8.28C (CLOUD)
Ad-AwareTrojan.Agent.EUZU
ComodoTrojWare.Win32.Agent.dqpip@0
F-SecureHeuristic.HEUR/AGEN.1105414
DrWebTrojan.Siggen10.5358
Invinceaheuristic
FortinetW32/Injector.EMZL!tr
SophosMal/Generic-S
SentinelOneDFI – Suspicious PE
CyrenW32/Trojan.AEME-0145
JiangminBackdoor.Nanobot.fg
WebrootW32.Injector.Gen
AviraHEUR/AGEN.1105414
MAXmalware (ai score=84)
Antiy-AVLTrojan[Backdoor]/Win32.NanoBot
ArcabitTrojan.Agent.EUZU
AhnLab-V3Suspicious/Win.Delphiless.X2091
ZoneAlarmHEUR:Backdoor.Win32.NanoBot.gen
MicrosoftTrojan:Win32/NanoCore.VD!MTB
CynetMalicious (score: 85)
McAfeeFareit-FPQ!56F6AA9EDAF3
VBA32TScope.Trojan.Delf
MalwarebytesTrojan.MalPack.DLF
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DHE20
TencentWin32.Trojan.Inject.Auto
IkarusGen.Win32.ExplorerHijack
eGambitUnsafe.AI_Score_99%
GDataTrojan.Agent.EUZU
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Agent.EUZU?

Trojan.Agent.EUZU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment