Trojan

Should I remove “Trojan.Agent.FBGA”?

Malware Removal

The Trojan.Agent.FBGA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.FBGA virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Agent.FBGA?


File Info:

crc32: 6CBEAFAE
md5: eb9cc9de29563bfb053b387a486a51b1
name: EB9CC9DE29563BFB053B387A486A51B1.mlw
sha1: 6a6e7bb2ec95122c988cc9ed65bcad070ced4227
sha256: 9efca326f844c6538ef6e1e59c59821a524f482941eeaf905df19259777e74e2
sha512: 2286fac2034555573a5d65f964d9cc85098ecee094bc0efa02ca8daa4bdb519c01912b8cfc2ab9b370523b688f30794bbb699ad2d2c82acba0dfded7b221ef26
ssdeep: 6144:oRe+9DR9L2Y6fGKUjts0/UCLk3+gA5sE5uHd:3kvIfnMs596S9
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.FBGA also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.FBGA
FireEyeGeneric.mg.eb9cc9de29563bfb
McAfeeGenericRXNC-FR!EB9CC9DE2956
CylanceUnsafe
SangforMalware
K7AntiVirusSpyware ( 0040f0131 )
BitDefenderTrojan.Agent.FBGA
K7GWSpyware ( 0040f0131 )
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZedlaF.34700.AE4@aKxXzHji
CyrenW32/Qbot.BP.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Bankerx-9817496-0
KasperskyTrojan-Banker.Win32.RTM.gui
AlibabaTrojanBanker:Win32/Qakbot.558de735
TencentWin32.Trojan-banker.Rtm.Amwa
Ad-AwareTrojan.Agent.FBGA
SophosMal/Generic-R + Mal/EncPk-APV
DrWebBackDoor.Qbot.568
TrendMicroTROJ_GEN.R002C0RLO20
McAfee-GW-EditionBehavesLike.Win32.Trojan.vz
EmsisoftTrojan.Agent.FBGA (B)
IkarusTrojan.Win32.Crypt
JiangminTrojan.Banker.RTM.ui
Antiy-AVLGrayWare/Win32.Kryptik.ehls
MicrosoftTrojan:Win32/Qakbot.GP!MTB
GridinsoftTrojan.Win32.Kryptik.oa
ArcabitTrojan.Agent.FBGA
ZoneAlarmTrojan-Banker.Win32.RTM.gui
GDataTrojan.Agent.FBGA
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Generic.C4275387
VBA32BScope.Backdoor.Qbot
ALYacTrojan.Agent.FBGA
MAXmalware (ai score=88)
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Kryptik.HIKD
TrendMicro-HouseCallTROJ_GEN.R002C0RLO20
RisingTrojan.Kryptik!8.8 (TFE:2:ItOo6ejRx2)
SentinelOneStatic AI – Suspicious PE
FortinetW32/Kryptik.HDNN!tr
AVGWin32:BankerX-gen [Trj]
AvastWin32:BankerX-gen [Trj]
Qihoo-360Generic/HEUR/QVM40.1.25A7.Malware.Gen

How to remove Trojan.Agent.FBGA?

Trojan.Agent.FBGA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment