Trojan

Trojan.Agent.FLLZ malicious file

Malware Removal

The Trojan.Agent.FLLZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.FLLZ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan.Agent.FLLZ?


File Info:

crc32: EB8E8D84
md5: 87a342f471c2e47e6e5535688df0eaee
name: 87A342F471C2E47E6E5535688DF0EAEE.mlw
sha1: e998bd2a617e1f04f9076c20329dd2fb3b5c6a69
sha256: ee9409c9e9ed5324f7a6ce9704076d1effa78c9c9de14ae7b8a7bc6edb30abd7
sha512: 7537244151620670793faa9ae07fe06bec04f3dbf78f9b153087bf604e9ec9be4a5df11e3f38908319d1a9a2a4f3ae0b624925895feea9bd75566f25d811ddd7
ssdeep: 3072:j1JzSxp5PpRh7phfrv/6jC5KHWnzD7xC3/o1WXDCFUBUL1iMhmDEwmuFWw2F:j1JGz5pX7fz+C5kUzDA36bFUc1i7EwR
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2006 The PHP Group
InternalName: php
FileVersion: 4.4.4.4
CompanyName: The PHP Group
URL: http://www.php.net
PrivateBuild:
LegalTrademarks: php
Comments:
ProductName: PHP Thread Safe
SpecialBuild:
ProductVersion: 4.4.4
FileDescription: PHP Script Interpreter
OriginalFilename: php4ts.dll
Translation: 0x0409 0x04b0

Trojan.Agent.FLLZ also known as:

LionicTrojan.Win32.Convagent.a!c
Elasticmalicious (high confidence)
ALYacSpyware.Banker.Dridex
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
SymantecPacked.Generic.517
ESET-NOD32a variant of Win32/Kryptik.HMBJ
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
CynetMalicious (score: 100)
KasperskyUDS:Trojan-Downloader.Win32.Cridex
BitDefenderTrojan.Agent.FLLZ
MicroWorld-eScanTrojan.GenericKDZ.76971
Ad-AwareTrojan.Agent.FLLZ
SophosML/PE-A + Mal/EncPk-APX
BitDefenderThetaGen:NN.ZedlaF.34058.lu8@aWp@69ki
TrendMicroTROJ_GEN.R002C0OHC21
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.87a342f471c2e47e
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataTrojan.GenericKDZ.76971
McAfeeGenericRXAA-AA!87A342F471C2
MAXmalware (ai score=88)
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0OHC21
RisingTrojan.Generic@ML.100 (RDML:2PIRe5iHR+LL9K4Qirlrwg)
IkarusTrojan-Banker.Dridex
FortinetW32/Dridex.6BA3!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Heur.Generic.HygBueAA

How to remove Trojan.Agent.FLLZ?

Trojan.Agent.FLLZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment