Trojan

What is “Trojan.Agent.FIWU”?

Malware Removal

The Trojan.Agent.FIWU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.FIWU virus can do?

  • Authenticode signature is invalid

How to determine Trojan.Agent.FIWU?


File Info:

name: 9D71F4F4C6BDB45DEABD.mlw
path: /opt/CAPEv2/storage/binaries/ca198b1994bb3409dabfac45b947a534dc6357c06c896f608b4662d35f7b430b
crc32: 44804201
md5: 9d71f4f4c6bdb45deabdd05239cc86b7
sha1: 3fbc7f1449bace61fd3b390df43a94cb7b119b4e
sha256: ca198b1994bb3409dabfac45b947a534dc6357c06c896f608b4662d35f7b430b
sha512: 0dfa6308b864c954f651d1b9cec1fbf43a014ec475187cf41cd83aea11d2fcdabb38bbaea6d4bc448719d0eb9ed15ffe6d4dcc6d7fa51063208eb381abe9d572
ssdeep: 6144:1OUonnLqJS0ZfGOiTxJhzsHM87RHMzTy1bWa:1VIeJSKGFlsHDRHfbn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AE648D0172C1E1B1E4BE0A3054E5CAB19B3EB8719EF58897F7D0164EA9702D1F639B63
sha3_384: 21cdb8fcdda492f355871c637f74993a54f63c2d0976107c67f018541f8c6be3f925b78c6c9e38ea874012cf749adf11
ep_bytes: 8bec609ce90e0c0300ff558bec81ec28
timestamp: 2018-03-15 13:41:46

Version Info:

CompanyName: Microsoft Windows
FileDescription: Host Process for Windows Services
FileVersion: 1.0.0.1
InternalName: Host Process for Windows Services
LegalCopyright: Copyright (C) 2017
OriginalFilename: Host Process for Windows Services
ProductName: Host Process for Windows Services
ProductVersion: 1.0.0.1
Translation: 0x0409 0x04b0

Trojan.Agent.FIWU also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.FIWU
ALYacTrojan.Agent.FIWU
CylanceUnsafe
VIPRETrojan.Agent.FIWU
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0052b19a1 )
K7AntiVirusTrojan ( 0052b19a1 )
CyrenW32/Agent.IBAR-6930
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.TBF
APEXMalicious
ClamAVWin.Backdoor.VictoryDll-9874345-0
KasperskyHEUR:Trojan.Win32.Agentb.gen
BitDefenderTrojan.Agent.FIWU
NANO-AntivirusTrojan.Win32.Generic.ivxlyn
AvastWin32:TrojanX-gen [Trj]
RisingTrojan.Tiggre!8.ED98 (TFE:5:3dPT1gwDOFJ)
Ad-AwareTrojan.Agent.FIWU
EmsisoftTrojan.Agent.FIWU (B)
DrWebTrojan.Siggen15.58836
TrendMicroTrojan.Win32.AUTOSTARTV.ZBIF
McAfee-GW-EditionBehavesLike.Win32.NetLoader.fh
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.9d71f4f4c6bdb45d
IkarusTrojan.Win32.Agent
GoogleDetected
AviraTR/Agent.nvkqq
Antiy-AVLTrojan[Exploit]/Win32.BypassUAC
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Agent.FIWU
ZoneAlarmHEUR:Trojan.Win32.Agentb.gen
GDataTrojan.Agent.FIWU
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.R535546
Acronissuspicious
McAfeeGenericRXAA-AA!6531661748E8
MAXmalware (ai score=87)
VBA32Trojan.Agentb
MalwarebytesMalware.AI.653395080
TrendMicro-HouseCallTrojan.Win32.AUTOSTARTV.ZBIF
TencentMalware.Win32.Gencirc.115dce1e
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.12205082.susgen
BitDefenderThetaGen:NN.ZexaF.34796.tu0@aKS2FNhi
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.449bac

How to remove Trojan.Agent.FIWU?

Trojan.Agent.FIWU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment