Trojan

What is “Trojan.AgentFC.S27416542”?

Malware Removal

The Trojan.AgentFC.S27416542 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.AgentFC.S27416542 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Trojan.AgentFC.S27416542?


File Info:

name: 934627AE3EDB61678A33.mlw
path: /opt/CAPEv2/storage/binaries/24d6e6cf5c711f216d6a7559bf437d094c336e250eb34deab056241e26d6f8b1
crc32: 99D1DD2F
md5: 934627ae3edb61678a33b9d0df63aa63
sha1: 6bf3d73404c48d5a9ad045803d47a75216869e8a
sha256: 24d6e6cf5c711f216d6a7559bf437d094c336e250eb34deab056241e26d6f8b1
sha512: b0a44e7e298576d6f67cb100783846e66a99032c9572e28ae4e19da354fa29ff1b9bb6764f1e46a89398d4f94656183748650e5ee5d8f56e277cd1eb593f5eb2
ssdeep: 3072:+KovUfMeLA/C6nxdb6DbD07OEqS550mE9O3NAhGCLOwstyhZFChcssc56FUrgxv9:Y8f7MdbwxS5M9qNYShcHUab
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D78421612CEB501EE4B3ABF05FDDF8F6985AE507290931BF1C4216178B33E658E16A34
sha3_384: 44f0b682dada4859d89fe62719abdb47dc6b4a89690892c6b6b530a5f5801513325c0c609994fcd27e06c342868fe5a6
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-02-20 10:48:26

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: x113y.exe
LegalCopyright:
OriginalFilename: x113y.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Trojan.AgentFC.S27416542 also known as:

BkavW32.AIDetectMalware.CS
LionicVirus.MSIL.Lamer.n!c
tehtrisGeneric.Malware
DrWebMSIL.Cola.1
MicroWorld-eScanTrojan.GenericKDZ.85968
FireEyeGeneric.mg.934627ae3edb6167
CAT-QuickHealTrojan.AgentFC.S27416542
SkyhighBehavesLike.Win32.Generic.ft
ALYacTrojan.GenericKDZ.85968
VIPRETrojan.GenericKDZ.85968
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058d1ef1 )
AlibabaVirus:MSIL/CryptInject.fe5fee69
K7GWTrojan ( 0058d1ef1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZemsilF.36802.xm3@aid7Mmi
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Ribaj.D
APEXMalicious
TrendMicro-HouseCallVirus.MSIL.RIBAJ.SMW
ClamAVWin.Packed.Barys-7725442-0
KasperskyHEUR:Virus.MSIL.Lamer.gen
BitDefenderTrojan.GenericKDZ.85968
NANO-AntivirusTrojan.Win32.Kazy.elhoip
RisingTrojan.Ribaj!1.B577 (CLASSIC)
EmsisoftTrojan.GenericKDZ.85968 (B)
GoogleDetected
F-SecureTrojan.TR/Dropper.Gen
ZillyaTrojan.RibajGen.Win32.1
TrendMicroVirus.MSIL.RIBAJ.SMW
Trapminemalicious.moderate.ml.score
SophosMSIL/Ribaj-A
SentinelOneStatic AI – Malicious PE
JiangminVirus.MSIL.Lamer.a
VaristW32/A-17b8a5e1!Eldorado
AviraTR/Dropper.Gen
MAXmalware (ai score=87)
Antiy-AVLTrojan/MSIL.Ribaj.a
Kingsoftmalware.kb.c.1000
XcitiumVirus.MSIL.Ribaj.F@7oybry
ArcabitTrojan.Generic.D14FD0
ZoneAlarmHEUR:Virus.MSIL.Lamer.gen
GDataMSIL.Virus.Ribaj.B
AhnLab-V3Win32/Ribaj.X1979
VBA32Virus.MSIL.Lamer.1
TACHYONWorm/W32.MSILamer
DeepInstinctMALICIOUS
Cylanceunsafe
TencentMsil.Virus.Ribaj.Gtgl
IkarusVirus.MSIL.CryptInject
FortinetMSIL/Ribaj.D
Cybereasonmalicious.e3edb6
PandaTrj/CI.A

How to remove Trojan.AgentFC.S27416542?

Trojan.AgentFC.S27416542 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment