Trojan

Trojan.Win32.Agent.xahazr malicious file

Malware Removal

The Trojan.Win32.Agent.xahazr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Agent.xahazr virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Agent.xahazr?


File Info:

crc32: C56BF8C9
md5: f9d5cde02421851e63c36f227ff1db62
name: F9D5CDE02421851E63C36F227FF1DB62.mlw
sha1: 6bb218d2ce85b724d4d431d67affed25da2280a9
sha256: 5ef2ac4a085e0ad9f43f72a645d0dfe77389b6f2fcc7fc4323df59aecaafa3d2
sha512: bf9c73f0b42ed5bf1c91d2a96fbbb586f651ccef56293f7da515fe71670b1f0e08fc99d21f7b738eac15b19e3d9e256688a5e802738e63b8ff91375baea43039
ssdeep: 24576:7fZJ0hupYpdwNvq+LoNEmEE1lQfzr54sz+LQqtJ:7fZJUYidwDsNNL3QfzrB+LNtJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright crookback
FileVersion: 90.3.82.95
CompanyName: Bualkhaw Chin
LegalTrademarks: pinewood king bolete
Comments: Daniella
ProductName: scat
FileDescription: mind
Translation: 0x0409 0x04e4

Trojan.Win32.Agent.xahazr also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.91704
FireEyeGeneric.mg.f9d5cde02421851e
McAfeeRDN/GenericM
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Cerbu.91704
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.024218
CyrenW32/Injector.AEY.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:InjectorX-gen [Trj]
KasperskyTrojan.Win32.Agent.xahazr
AlibabaTrojan:Win32/Androm.901f77af
AegisLabTrojan.Win32.Androm.4!c
RisingTrojan.Injector!8.C4 (CLOUD)
EmsisoftGen:Variant.Cerbu.91704 (B)
F-SecureTrojan.TR/Injector.lsasy
DrWebTrojan.Inject4.7723
McAfee-GW-EditionBehavesLike.Win32.Dropper.bc
SophosGeneric ML PUA (PUA)
IkarusTrojan.Win32.Injector
AviraTR/Injector.cxkql
MAXmalware (ai score=85)
KingsoftWin32.Troj.Agent.(kcloud)
MicrosoftTrojan:Win32/Androm.RF!MTB
GridinsoftTrojan.Win32.Downloader.sa
ArcabitZum.Androm.1
ZoneAlarmHEUR:Trojan.Win32.Crypt.gen
GDataMSIL.Backdoor.Quasar.VUFOMK
CynetMalicious (score: 100)
MalwarebytesTrojan.Injector.DL.Generic
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.EORU
SentinelOneStatic AI – Suspicious PE
FortinetW32/Injector.EONL!tr
AVGWin32:InjectorX-gen [Trj]
CrowdStrikewin/malicious_confidence_80% (W)
Qihoo-360Win32/Backdoor.Androm.HyoDiLsA

How to remove Trojan.Win32.Agent.xahazr?

Trojan.Win32.Agent.xahazr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment