Trojan

Trojan-Downloader.Win32.Agent.xxzugl removal tips

Malware Removal

The Trojan-Downloader.Win32.Agent.xxzugl is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Agent.xxzugl virus can do?

  • Presents an Authenticode digital signature
  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • A scripting utility was executed
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Downloader.Win32.Agent.xxzugl?


File Info:

crc32: A115E065
md5: cc5d78f5cfd7d12fce8642822d5b736d
name: CC5D78F5CFD7D12FCE8642822D5B736D.mlw
sha1: 83f38b93ee1f58ea0396ea6f4ad589becd3014a5
sha256: 9b76345c13347ed270b62548d1fb8c2c2f3627805174400bfa301096575a5891
sha512: c41dde01d91bf3c66d3354891ac56c9777c041fe918948062d211745a3490b22422ae602f4d2eb4085c1a07e07bcb3bf510ca7e068c3ae23079a4a952136dc6a
ssdeep: 12288:+Qnk3GDYKGcblwtX+t4Y8aePzb6v0xhRwjp:SAOcZwXYwPqcIp
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Downloader.Win32.Agent.xxzugl also known as:

CynetMalicious (score: 100)
ALYacTrojan.GenericKD.38057170
APEXMalicious
AvastWin32:DangerousSig [Trj]
KasperskyTrojan-Downloader.Win32.Agent.xxzugl
BitDefenderTrojan.GenericKD.38057170
MicroWorld-eScanTrojan.GenericKD.38057170
Ad-AwareTrojan.GenericKD.38057170
McAfee-GW-EditionArtemis
FireEyeTrojan.GenericKD.38057170
EmsisoftTrojan.GenericKD.38057170 (B)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
GDataTrojan.GenericKD.38057170
McAfeeArtemis!CC5D78F5CFD7
MAXmalware (ai score=86)
MaxSecureWin.MxResIcn.Heur.Gen
AVGWin32:DangerousSig [Trj]

How to remove Trojan-Downloader.Win32.Agent.xxzugl?

Trojan-Downloader.Win32.Agent.xxzugl removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment