Trojan

What is “Trojan.Win32.Agent.xaddtf”?

Malware Removal

The Trojan.Win32.Agent.xaddtf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Agent.xaddtf virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Agent.xaddtf?


File Info:

crc32: EC095390
md5: 210c6658ab41508c6f1a654fc4924280
name: gt7m9826.exe
sha1: c471f66baa8ee85d42374a6701fed40ead1b8f7b
sha256: 72798d65f0a8a0fddab716ddf40cd87e2450c860c108da5004c22bf2b681b324
sha512: 6cf80468b97083701960af19f5f78ffdf86d5fa47e7a34d1cee04b3cb18e776cea3fc26dd316f74e865acb40cb6c145ee0750baad98d48b4b8d9650b39abfde2
ssdeep: 3072:+ti7SAnJUfi7bV/gBecSCcCXR4gdGH41QdHcQPcQUQVOw:R7SAnJUa7pglSdCXmgQOBEcfK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: family that if you believe in yourself and your country
InternalName: t validates for a kid somewhere in a community wondering if he belongs
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: family that if you believe in yourself and your country
ProductVersion: 1, 0, 0, 1
FileDescription: The results are a milestone for Buttigieg, the 38-year-old who has vaulted
OriginalFilename: t validates for a kid somewhere in a community wondering if he belongs
Translation: 0x0409 0x04b0

Trojan.Win32.Agent.xaddtf also known as:

DrWebTrojan.DownLoader32.59606
MicroWorld-eScanTrojan.Autoruns.GenericKD.33053276
FireEyeGeneric.mg.210c6658ab41508c
CAT-QuickHealTrojan.Wacatac
McAfeeEmotet-FQF!210C6658AB41
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.Autoruns.GenericKD.33053276
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.baa8ee
TrendMicroTrojanSpy.Win32.EMOTET.SML.hp
BitDefenderThetaGen:NN.ZexaE.34084.lq1@a88jKppi
F-ProtW32/Emotet.AEY.gen!Eldorado
SymantecTrojan Horse
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Agent.xaddtf
AlibabaTrojan:Win32/Emotet.763b45cd
NANO-AntivirusTrojan.Win32.GenKryptik.gzadlb
ViRobotTrojan.Win32.Emotet.164017
AegisLabTrojan.Win32.Malicious.4!c
TencentWin32.Trojan.Agent.Hmho
Endgamemalicious (high confidence)
SophosMal/Encpk-APE
F-SecureTrojan.TR/AD.Emotet.exewr
Invinceaheuristic
McAfee-GW-EditionEmotet-FQF!210C6658AB41
FortinetW32/GenKryptik.EDPX!tr
Trapminemalicious.high.ml.score
EmsisoftTrojan.Autoruns.GenericKD.33053276 (B)
IkarusTrojan-Banker.Emotet
CyrenW32/Emotet.AEY.gen!Eldorado
JiangminTrojan.Agent.cofi
AviraTR/AD.Emotet.exewr
ArcabitTrojan.Autoruns.Generic.D1F85A5C
SUPERAntiSpywareTrojan.Agent/Gen-Emotet
ZoneAlarmTrojan.Win32.Agent.xaddtf
MicrosoftTrojan:Win32/Emotet.ARJ!MTB
AhnLab-V3Malware/Win32.RL_Trojanspy.R325446
VBA32TScope.Malware-Cryptor.SB
ALYacTrojan.Agent.Emotet
Ad-AwareTrojan.Autoruns.GenericKD.33053276
MalwarebytesTrojan.Emotet
PandaTrj/Emotet.A
ESET-NOD32a variant of Win32/Kryptik.HAWV
TrendMicro-HouseCallTrojanSpy.Win32.EMOTET.SML.hp
RisingTrojan.Emotet!8.B95 (CLOUD)
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_59%
GDataTrojan.Autoruns.GenericKD.33053276
WebrootW32.Trojan.Emotet
AVGWin32:BankerX-gen [Trj]
AvastWin32:BankerX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Agent.xaddtf?

Trojan.Win32.Agent.xaddtf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment