Trojan

Trojan-Dropper.Win32.Agent.ozko malicious file

Malware Removal

The Trojan-Dropper.Win32.Agent.ozko is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Dropper.Win32.Agent.ozko virus can do?

  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan-Dropper.Win32.Agent.ozko?


File Info:

name: B4E1D4ACEDD18F63E98E.mlw
path: /opt/CAPEv2/storage/binaries/73e2fc8b9d496bff5733c34c02f650a6a75331f5348a7b30e9b66523344f5182
crc32: 360A10BC
md5: b4e1d4acedd18f63e98e04c0b38978e3
sha1: 58afe42f81517af078a46eeb80d9dabc425594d4
sha256: 73e2fc8b9d496bff5733c34c02f650a6a75331f5348a7b30e9b66523344f5182
sha512: 3ad84f97c30534877f511fdbb6e766090cbeda5ac9ab34d6e213eb1a18697e7966dd25594bde5b1dfae42c6ddf2a984c6c95873e96236c99c96968d0e2b6a017
ssdeep: 6144:jrVJZtt2id5msGZpUNLvY1Bcqqbzr8LVf1+xJet8s8yuvuYvYaeu2loWA:jr3t2iHmbZp4wcqqbyf1EYqs8yGuiYmN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17A948D22B781E476C01302B16E16CA7895F9BCB1E936454777D89F1DAFB02C25A3AF43
sha3_384: 1f3e3f15a658a1596d6f43d4804f3261718675fabd3ae33054d468ec01f28926d633d31c455dec8cac77576ed6d0393e
ep_bytes: e8077e0000e979feffffcccccccccccc
timestamp: 2015-02-03 10:10:43

Version Info:

0: [No Data]

Trojan-Dropper.Win32.Agent.ozko also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.427193
ClamAVWin.Trojan.Agent-1254720
FireEyeGeneric.mg.b4e1d4acedd18f63
CAT-QuickHealDownloader.Lmn.6035
ALYacGen:Variant.Zusy.427193
MalwarebytesLoadMoney.Adware.Bundler.DDS
ZillyaAdware.LoadMoneyGen.Win32.4
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 004b87be1 )
K7GWAdware ( 004b87be1 )
Cybereasonmalicious.cedd18
VirITTrojan.Win32.LoadMoney.RN
CyrenW32/S-4201cd00!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Adware.LoadMoney.RM
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Dropper.Win32.Agent.ozko
BitDefenderGen:Variant.Zusy.427193
NANO-AntivirusTrojan.Win32.Agent.dnofez
AvastWin32:Adware-gen [Adw]
TencentMalware.Win32.Gencirc.10bb74da
TACHYONTrojan-Dropper/W32.Agent.435712.I
EmsisoftGen:Variant.Zusy.427193 (B)
DrWebTrojan.LoadMoney.455
VIPREGen:Variant.Zusy.427193
McAfee-GW-EditionBehavesLike.Win32.FakeAVWinwebSecurity.gh
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Zusy.427193
JiangminTrojanDropper.Agent.bsar
Antiy-AVLTrojan[Dropper]/Win32.Agent
XcitiumTrojWare.Win32.Rogue.OOTF@5bltcy
ArcabitTrojan.Zusy.D684B9
ZoneAlarmTrojan-Dropper.Win32.Agent.ozko
MicrosoftProgram:Win32/Wacapew.C!ml
GoogleDetected
AhnLab-V3Dropper/Win.Agent.C5182364
McAfeePUP-XJH-KU
MAXmalware (ai score=82)
VBA32TrojanDropper.Agent
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Generic@AI.100 (RDML:TVO1l8z0WGKmL2XxmvVkNQ)
YandexTrojan.GenAsa!8TPVfTZcbZ4
IkarusTrojan.Win32.Jorik
MaxSecureTrojan.Malware.8090096.susgen
FortinetRiskware/LoadMoney
BitDefenderThetaGen:NN.ZexaCO.36348.AqW@aa5tmpak
AVGWin32:Adware-gen [Adw]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Trojan-Dropper.Win32.Agent.ozko?

Trojan-Dropper.Win32.Agent.ozko removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment