Trojan

About “Trojan-Clicker.Win32.Agent.cfgi” infection

Malware Removal

The Trojan-Clicker.Win32.Agent.cfgi is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Clicker.Win32.Agent.cfgi virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan-Clicker.Win32.Agent.cfgi?


File Info:

name: 094896EF22F0C7807709.mlw
path: /opt/CAPEv2/storage/binaries/5d5930f7f48869c1d6d660dd39f2683ac8ed810c773841ea3ca546a74ba86287
crc32: 7B08C221
md5: 094896ef22f0c7807709984e82a108ae
sha1: 0ac79a219b5a1f0acbe0f6b9400091d7f2728213
sha256: 5d5930f7f48869c1d6d660dd39f2683ac8ed810c773841ea3ca546a74ba86287
sha512: a4147d4b69a60f4eafce851d4df4f8b8bf4452e2819694c69f1c030fffd9129abdf300e9ec7841ce4cc8289010ec1ab66fb99c3ee7169c11feb965395b6c0b2a
ssdeep: 1536:vadSzBi8IA7Mpe+McFK6cp01aQY4ZDIdpSJiipikQ2/lL7NE5U9CDByqGACM5e+W:ESzBi8IAYprQ2tpCDByqGAn5rQM3jA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A0454BA403720CB5E967103C2561BF4ACE79F0EAC4E3DCC68D9169CE09266F1675C7BA
sha3_384: 20c13388774fba0cf927b99cb31a2fe670dc4d69a4c2a27403d2365aa5951eccea138ba72155135b97d941a8fa339e38
ep_bytes: 4d5a0000000000000000000000000000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan-Clicker.Win32.Agent.cfgi also known as:

BkavW32.FamVT.WowlikATTc.Worm
LionicTrojan.Multi.Generic.m8HN
tehtrisGeneric.Malware
DrWebTrojan.Siggen6.27139
MicroWorld-eScanGen:Variant.Razy.771926
FireEyeGeneric.mg.094896ef22f0c780
CAT-QuickHealTrojan.Powessere.SL4
McAfeeGamarue-FAW!094896EF22F0
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004b5f271 )
K7GWTrojan ( 004b5f271 )
Cybereasonmalicious.f22f0c
ArcabitTrojan.Razy.DBC756
BitDefenderThetaGen:NN.ZexaF.34646.hfX@aOSwpMb
CyrenW32/A-0ca6dc02!Eldorado
SymantecTrojan.Poweliks!gm
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Wowlik.J
CynetMalicious (score: 100)
KasperskyTrojan-Clicker.Win32.Agent.cfgi
BitDefenderGen:Variant.Razy.771926
NANO-AntivirusTrojan.Win32.A0ca6dc02.difvll
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Razy.771926
EmsisoftGen:Variant.Razy.771926 (B)
ComodoTrojWare.Win32.Wowlik.BE@5j4ozk
BaiduWin32.Trojan.Wowlik.a
VIPREGen:Variant.Razy.771926
McAfee-GW-EditionGamarue-FAW!094896EF22F0
SentinelOneStatic AI – Malicious PE
Trapminemalicious.moderate.ml.score
SophosML/PE-A
IkarusVirus.SuspectCRC
AviraTR/Trash.Gen
Antiy-AVLTrojan/Generic.ASBOL.8AFE
MicrosoftTrojan:Win32/Wacatac.B!ml
ViRobotTrojan.Win32.CorruptPE.Gen.A
ZoneAlarmTrojan-Clicker.Win32.Agent.cfgi
GDataWin32.Trojan.Enistery.A
GoogleDetected
AhnLab-V3Trojan/Win32.Poweliks.C597479
Acronissuspicious
VBA32BScope.Trojan.Downloader
ALYacGen:Variant.Razy.771926
MalwarebytesGeneric.Trojan.Malicious.DDS
APEXMalicious
RisingTrojan.Wowlik!1.A23B (CLASSIC)
MAXmalware (ai score=80)
MaxSecureTrojan.cerbu.25355
FortinetW32/Kovter.EB0!tr
AVGWin32:Malware-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan-Clicker.Win32.Agent.cfgi?

Trojan-Clicker.Win32.Agent.cfgi removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment