Trojan

What is “Trojan.Agent.FIGA”?

Malware Removal

The Trojan.Agent.FIGA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.FIGA virus can do?

  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • A process created a hidden window
  • Unconventionial language used in binary resources: Slovak
  • Uses Windows utilities for basic functionality
  • Anomalous binary characteristics

How to determine Trojan.Agent.FIGA?


File Info:

crc32: FBC8A700
md5: d5aa0be1b47f58579c835e121fd49c80
name: D5AA0BE1B47F58579C835E121FD49C80.mlw
sha1: a633ba4ece55b23409eb69b8888e84275330a829
sha256: b8e74166ed0a8ec6613837cf319c6eaa9638cd512668f95198eaa4a9b60a634d
sha512: f7248097d4a4b1a774b51caf7c933920b5baa66eb7bb3ae74bfd2d14a65ae364e2c0c3db4e7825d27c3023ddbc3d28113f3f5da55a6099b024f0fe4765deb88e
ssdeep: 49152:CXojtTQ39NwEcIEMWwRcMBdSMHDk7qpJMy3whOSoukpZC2A:CXYANwDMtRckSsbpJtwgScfA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2015 Oleg N. Scherbakov
InternalName: 7ZSfxMod
FileVersion: 1.6.0.3819
CompanyName: Oleg N. Scherbakov
PrivateBuild: January 11, 2016
ProductName: 7-Zip SFX
ProductVersion: 1.6.0.3819
FileDescription: 7z Setup SFX (x86)
OriginalFilename: 7ZSfxMod_x86.exe
Translation: 0x0000 0x04b0

Trojan.Agent.FIGA also known as:

BkavW32.AIDetect.malware2
CynetMalicious (score: 99)
CAT-QuickHealBackdoor.Agent
ALYacTrojan.Agent.FIGA
SangforBackdoor.Win32.Agent.myubkb
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaBackdoor:Win32/Generic.42acb115
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.CURFUQA
APEXMalicious
AvastFileRepMalware
ClamAVWin.Malware.Pterodo-9865184-0
KasperskyBackdoor.Win32.Agent.myubkb
BitDefenderTrojan.Agent.FIGA
MicroWorld-eScanTrojan.Agent.FIGA
Ad-AwareTrojan.Agent.FIGA
SophosMal/Generic-S
VIPREWin32.Malware!Drop
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.Agent.FIGA
EmsisoftTrojan.Agent.FIGA (B)
JiangminBackdoor.Agent.jqs
WebrootW32.Trojan.Gen
AviraBDS/Agent.buhwd
eGambitPE.Heur.InvalidSig
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Agent.FIGA
AegisLabTrojan.Win32.Agent.m!c
GDataWin32.Trojan.BSE.S11PG3
AhnLab-V3Malware/Win.Generic.C4496630
McAfeeArtemis!D5AA0BE1B47F
MAXmalware (ai score=86)
PandaTrj/Agent.ALS
FortinetW32/Agent.SFX!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan.Agent.FIGA?

Trojan.Agent.FIGA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment