Trojan

Trojan.AgentRI.S28569899 (file analysis)

Malware Removal

The Trojan.AgentRI.S28569899 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.AgentRI.S28569899 virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.AgentRI.S28569899?


File Info:

name: 7688511AB5D9DFF56ECE.mlw
path: /opt/CAPEv2/storage/binaries/b3e0306295b23a75d19e1cf0ea846c4321d94d90ee5eb4052201292b09690977
crc32: 0E681167
md5: 7688511ab5d9dff56ecefaa264c57c95
sha1: 3aa49da9f4b8c0b778bb0c9381a5819b2d8fad72
sha256: b3e0306295b23a75d19e1cf0ea846c4321d94d90ee5eb4052201292b09690977
sha512: a95ee9996f9673ef86fec663f06f0b501252ce308ed3b399d0791ce69fea47bc3ba32e0f99f9d54b00748d58b79bbd9dd11f0597b765d8d2c4ff40e4e7669a33
ssdeep: 1536:xJvJnBpwdaMIOOnToIfiV6pdQQdo+3OVgtsour:xJvxKaCqTBfioor+3+g+ou
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T164938D137AD109A3E8B1467000DB5A1ECB7BFC30072695A7E74F6FEA1B3169199352CB
sha3_384: cb7f6967d92b1e49a4ec2f54f830068da34bd0aba1fdb43beb99abd5e6b06cda9bdb5f6287c249610893e8a15c5987e2
ep_bytes: 558bec6aff6800514100683810410064
timestamp: 2008-05-31 04:52:45

Version Info:

0: [No Data]

Trojan.AgentRI.S28569899 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanTrojan.GenericKDZ.92046
FireEyeGeneric.mg.7688511ab5d9dff5
CAT-QuickHealTrojan.AgentRI.S28569899
ALYacTrojan.GenericKDZ.92046
CylanceUnsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 004f12f91 )
BitDefenderTrojan.GenericKDZ.92046
K7GWTrojan ( 004f12f91 )
Cybereasonmalicious.ab5d9d
BitDefenderThetaAI:FileInfector.AD9B3E700F
CyrenW32/Graftor.EN.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Resur.I
TrendMicro-HouseCallVirus.Win32.RESUR.A
ClamAVWin.Malware.Triusor-9952497-0
KasperskyHEUR:Virus.Win32.Generic
NANO-AntivirusVirus.Win32.Infector.eazaig
CynetMalicious (score: 100)
RisingVirus.Resur!1.B42C (CLASSIC)
Ad-AwareTrojan.GenericKDZ.92046
TACHYONTrojan/W32.Agent.94208.ELY
SophosML/PE-A
ComodoTrojWare.Win32.Nimnul.A@5waoem
DrWebWin32.EquationKiller.1
VIPRETrojan.GenericKDZ.92046
TrendMicroVirus.Win32.RESUR.A
McAfee-GW-EditionBehavesLike.Win32.Triusor.nm
SentinelOneStatic AI – Suspicious PE
Trapminesuspicious.low.ml.score
EmsisoftTrojan.GenericKDZ.92046 (B)
APEXMalicious
Antiy-AVLTrojan/Generic.ASBOL.C6FF
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Trojan.PSE.1U6M3NY
GoogleDetected
McAfeeW32/Triusor.A
MAXmalware (ai score=84)
VBA32Virus.Win32.Triusor
MalwarebytesMalware.AI.4115567906
IkarusVirus.Win32.Resur
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.FN
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.AgentRI.S28569899?

Trojan.AgentRI.S28569899 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment