Trojan

Trojan-Downloader.Win64.Agent.vho malicious file

Malware Removal

The Trojan-Downloader.Win64.Agent.vho is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win64.Agent.vho virus can do?

  • Presents an Authenticode digital signature

Related domains:

tpop.kpzip.com
tj.kpzip.com
hotnews.dftoutiao.com

How to determine Trojan-Downloader.Win64.Agent.vho?


File Info:

crc32: 820F8564
md5: c01376c6ccc5b5dd5640176f4fb05251
name: tpopplus-4.exe
sha1: ac9de9a247a0a9f1b1a6fe536a3f95ac8569a9a3
sha256: 13dcfaa84dfd678e8732ef8ff00d1fe56a1ff3882bccc20e03a145df5ba2cd64
sha512: 889c33faf169fcad3fee37852c85a24a13e0e9624d5230271b42835ec20ac0c69a94687ef56b8e9a715c090bfb00928e385aaebac381ab716c4802a2c0c6da74
ssdeep: 24576:0fYEU0Hu4BH9vCp7JUGXp01RNWpW0mcXzvu5bo:ed9SJUe0HD0mcXju5bo
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2019
InternalName: TPopPlus
FileVersion: 1.0.0.4
CompanyName: TODO:
ProductName: TPopPlus
ProductVersion: 1.0.0.4
FileDescription: TPopPlus
OriginalFilename: TPopPlus.exe
Translation: 0x0409 0x04b0

Trojan-Downloader.Win64.Agent.vho also known as:

BkavW32.HfsAdware.C51A
MicroWorld-eScanTrojan.GenericKD.32598910
FireEyeGeneric.mg.c01376c6ccc5b5dd
CAT-QuickHealPUA.RiskwareRI.S8133517
McAfeeGenericRXIY-YR!C01376C6CCC5
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.32598910
K7GWRiskware ( 0040eff71 )
CyrenW32/Ulise.AA.gen!Eldorado
APEXMalicious
GDataTrojan.GenericKD.32598910
KasperskyHEUR:Trojan-Downloader.Win64.Agent.vho
AlibabaBackdoor:Win32/KZip.b95b329d
NANO-AntivirusRiskware.Win32.KuaiZip.gilwth
ViRobotAdware.Kuaizip.915352.C
SUPERAntiSpywareAdware.KuaiZip/Variant
RisingTrojan.Generic!8.C3 (TFE:dGZlOgWJ94J3UbBmOw)
Endgamemalicious (high confidence)
SophosKuaiZip (PUA)
ComodoApplicUnwnt@#gess6hbvymwy
F-SecureAdware.ADWARE/Kuaizip.aqire
DrWebProgram.Kuaizip.1
ZillyaAdware.KuaiZip.Win32.457
TrendMicroTROJ_GEN.R020C0PJB19
McAfee-GW-EditionGenericRXIY-YR!C01376C6CCC5
EmsisoftTrojan.GenericKD.32598910 (B)
IkarusTrojan.Crypt
F-ProtW32/Ulise.AA.gen!Eldorado
WebrootW32.Adware.Gen
AviraADWARE/Kuaizip.aqire
MAXmalware (ai score=70)
Antiy-AVLGrayWare[AdWare]/Win32.KuaiZip
ArcabitTrojan.Generic.D1F16B7E
AegisLabTrojan.Win64.Agent.a!c
ZoneAlarmHEUR:Trojan-Downloader.Win64.Agent.vho
MicrosoftPUA:Win32/KuaiZip
AhnLab-V3PUP/Win32.RL_Generic.R292165
VBA32BScope.Adware.KuaiZip
ALYacTrojan.GenericKD.32598910
Ad-AwareTrojan.GenericKD.32598910
MalwarebytesAdware.Kuaiba
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/KuaiZip.U potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R020C0PJB19
YandexPUA.KuaiZip!
FortinetRiskware/KuaiZip
AVGFileRepMalware [PUP]
AvastWin32:PUP-gen [PUP]
MaxSecureTrojan.Malware.73580967.susgen

How to remove Trojan-Downloader.Win64.Agent.vho?

Trojan-Downloader.Win64.Agent.vho removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment