Trojan

Trojan.Agent.GBZA removal instruction

Malware Removal

The Trojan.Agent.GBZA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.GBZA virus can do?

  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Maori
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Agent.GBZA?


File Info:

name: D1845C32FC805CC79EF4.mlw
path: /opt/CAPEv2/storage/binaries/9f6740fe0f0586df052ea9f857bfc324da5cba2fffb3c20a26ad8bcc523f8f4f
crc32: F6FA12BD
md5: d1845c32fc805cc79ef471ffee96fec9
sha1: c40619f0d7d2787552eabeb6bc53482cf99c4d47
sha256: 9f6740fe0f0586df052ea9f857bfc324da5cba2fffb3c20a26ad8bcc523f8f4f
sha512: f9ea1617c71232765694380df1ffb9c2de4b8918b62d0e7e502aadf8380b27dd36d8f65c27bee6dfd0a6f5384f291a39d2d07d646869e8608166985a3d8f351a
ssdeep: 49152:YEwEcgIYTrNm8kYo0sAg/RUbAjZ035mMOyDFxoUf:YsIEN7kYLsAgmbAjZ035wyDFxoo
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ED06DF94EBDB896FD3B785B24BA6A3B6341EAED33C03644E8107C719FE39CD19851214
sha3_384: cbb7ed01898cf519b859f1a2ec4f1c23452348c675a123d5837ef91e6d41ba7ed63d6941eb0807e1c34a47a2dbbd2871
ep_bytes: 6824164000e8eeffffff000000000000
timestamp: 2012-09-16 05:37:16

Version Info:

0: [No Data]

Trojan.Agent.GBZA also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.WBNA.tnqm
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Agent.GBZA
FireEyeTrojan.Agent.GBZA
CAT-QuickHealWorm.Gamarue.S145097
McAfeeW32/Worm-FIA!D1845C32FC80
Cylanceunsafe
ZillyaTrojan.Injector.Win32.875115
SangforSuspicious.Win32.Save.vb
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_2f1e93.None
K7GWTrojan ( 003e33751 )
K7AntiVirusTrojan ( 003eb2a51 )
BaiduWin32.Trojan.Inject.bh
VirITTrojan.Win32.Generic.BSUF
CyrenW32/Vobfus.IS.gen!Eldorado
SymantecDownloader.Dromedan
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.Agent.GBZA
NANO-AntivirusTrojan.Script.Redirector.efsveq
AvastWin32:AdwareSig [Adw]
TencentMalware.Win32.Gencirc.10bc36cf
TACHYONWorm/W32.WBNA.3906752
SophosMal/VBInj-Y
DrWebBackDoor.Andromeda.22
VIPRETrojan.Agent.GBZA
McAfee-GW-EditionBehavesLike.Win32.VBObfus.wh
EmsisoftTrojan.Agent.GBZA (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Worm.Gamarue.AP
JiangminTrojan/VBKrypt.hdpu
Antiy-AVLTrojan/Win32.VBKrypt
XcitiumTrojWare.Win32.Injector.XFR@4rorse
ArcabitTrojan.Agent.GBZA
ViRobotDropper.Agent.118784.J
MicrosoftTrojan:Win32/Vindor!pz
GoogleDetected
AhnLab-V3Trojan/Win32.Injector.R37109
ALYacTrojan.Agent.GBZA
MAXmalware (ai score=83)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
RisingTrojan.Injector!1.AE06 (CLASSIC)
IkarusWorm.Win32.Gamarue
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.GBZA!tr
AVGWin32:AdwareSig [Adw]
DeepInstinctMALICIOUS

How to remove Trojan.Agent.GBZA?

Trojan.Agent.GBZA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment