Trojan

Trojan.Win32.Agent.xadzcg removal

Malware Removal

The Trojan.Win32.Agent.xadzcg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Agent.xadzcg virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Trojan.Win32.Agent.xadzcg?


File Info:

name: 3797FB578288B48CE4BE.mlw
path: /opt/CAPEv2/storage/binaries/e72ed60ce271711549ca3c76194b38084e237b1bbf161de3e5e36ceb49d76fe3
crc32: B75E800F
md5: 3797fb578288b48ce4be99606392b422
sha1: c9feb31ee3a329261693694f23b533dff9c5c977
sha256: e72ed60ce271711549ca3c76194b38084e237b1bbf161de3e5e36ceb49d76fe3
sha512: ea6800c66dc8847b5fcf485f80574f1f4acc6b0e72a11721d12ecdead0a01e495bda3d1daa68c3216ef15690a6ebba0b5e7a65092a3a5e2b8d11a332dfd08d5a
ssdeep: 1536:GfsEqouTRcG/Mzvgf7xEuvnXNTRdUzwTekUOisZ1yDDajtXbJd/fH:GVqoCl/YgjxEufVU0TbTyDDalb/fH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10D24F913FD0A586EF46295F13C65E669BA211E370FE46D07B2667B0027B124BB2FC11B
sha3_384: a73b2d9b5a044c179806e348ebbc39aaf3075bd70909499be5357aaab2cbe909dca20c66283c4f0ead3e15db56349363
ep_bytes: 68dc3a4000e8eeffffff000048000000
timestamp: 2013-04-01 07:08:22

Version Info:

Translation: 0x0409 0x04b0
ProductName: Project1
FileVersion: 1.00
ProductVersion: 1.00
InternalName: TJprojMain
OriginalFilename: TJprojMain.exe

Trojan.Win32.Agent.xadzcg also known as:

BkavW32.WatermarkHQc.PE
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Gosys.B
CAT-QuickHealW32.Mofksys.A4
ALYacWin32.Gosys.B
MalwarebytesVB.Trojan.Generic.DDS
VIPREWin32.Gosys.B
SangforTrojan.Win32.Save.a
K7AntiVirusVirus ( 00579e181 )
K7GWVirus ( 00579e181 )
Cybereasonmalicious.78288b
BaiduWin32.Worm.VB.b
VirITTrojan.Win32.Agent4.ALYU
CyrenW32/Trojan.UEJO-9077
SymantecW32.Gosys!gen1
tehtrisGeneric.Malware
ESET-NOD32Win32/VB.NBI
APEXMalicious
ClamAVWin.Trojan.VBGeneric-6735875-0
KasperskyTrojan.Win32.Agent.xadzcg
BitDefenderWin32.Gosys.B
NANO-AntivirusTrojan.Win32.Swisyn.flhacn
AvastWin32:VB-OJQ [Wrm]
TencentWorm.Win32.Wbna.wf
EmsisoftWin32.Gosys.B (B)
F-SecureTrojan.TR/Patched.Ren.Gen
DrWebWin32.HLLP.Swisyn
ZillyaVirus.HLLP.Win32.1
TrendMicroPE_SWISB.A-O
McAfee-GW-EditionBehavesLike.Win32.Swisyn.dm
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.3797fb578288b48c
SophosTroj/Agent-ABZF
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE1.C4EPE9
JiangminTrojan/Agent.hxgb
GoogleDetected
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.Agent
XcitiumTrojWare.Win32.VB.QOTY@4qfd0g
ArcabitWin32.Gosys.B
ZoneAlarmTrojan.Win32.Agent.xadzcg
MicrosoftWorm:Win32/Mofksys.B
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Swisyn.R254290
Acronissuspicious
McAfeeW32/Swisyn.b
TACHYONWorm/W32.VB-Mofksys.Zen
VBA32TScope.Trojan.VB
Cylanceunsafe
PandaTrj/Spy.AT
ZonerTrojan.Win32.88925
TrendMicro-HouseCallPE_SWISB.A-O
RisingTrojan.Agent!1.6A70 (CLASSIC)
YandexTrojan.GenAsa!182yZo+3+DM
IkarusWorm.Mofksys
MaxSecureVirus.W32.Agent.xjgj
FortinetW32/VB.QCC!tr.dldr
BitDefenderThetaAI:Packer.BB9602BE20
AVGWin32:VB-OJQ [Wrm]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Agent.xadzcg?

Trojan.Win32.Agent.xadzcg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment