Trojan

What is “Trojan.Win32.Agent.xahcbg”?

Malware Removal

The Trojan.Win32.Agent.xahcbg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Agent.xahcbg virus can do?

  • Anomalous binary characteristics

How to determine Trojan.Win32.Agent.xahcbg?


File Info:

crc32: 4A288D56
md5: ba08ebebc0859783501f5c5ad2e22425
name: BA08EBEBC0859783501F5C5AD2E22425.mlw
sha1: be28da8fc992816aa3d9de972c089c2118e7530b
sha256: 5617152b8493677c227634725624d3709234c3ebd17f5bbba50aac12871cd9e1
sha512: 49b11cd2dd5ccec17114e102039850db46a48222c4c174e85b96bfff71864f5cc051cb8c71434692d0e7baae25e43200a87381c29aba6e6df29f09df0e70da21
ssdeep: 6144:P9X0Gz5NXNIsFDwDuv0pyjeZRcuA7IvUJ+l:50yNJ600nZRh8J+l
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: Copyright pinewood king bolete
FileVersion: 42.73.21.19
CompanyName: Northern Uzbek Written Perso-Arabic Script
LegalTrademarks: crookback
Comments: UNSC
ProductName: lightbulb
FileDescription: Carpathos
Translation: 0x0409 0x04e4

Trojan.Win32.Agent.xahcbg also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanTrojan.GenericKD.36426885
FireEyeGeneric.mg.ba08ebebc0859783
CAT-QuickHealTrojan.Multi
Qihoo-360Win32/Trojan.Generic.HyoDnf8A
McAfeeArtemis!BA08EBEBC085
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.36426885
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.bc0859
CyrenW32/Injector.AFF.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyTrojan.Win32.Agent.xahcbg
AlibabaTrojan:Win32/SpyNoon.41cf675c
NANO-AntivirusTrojan.Win32.Inject.insnyt
ViRobotTrojan.Win32.Z.Injector.261974.B
TencentWin32.Trojan.Agent.Pefo
Ad-AwareTrojan.GenericKD.36426885
EmsisoftTrojan.GenericKD.36426885 (B)
F-SecureTrojan.TR/AD.Swotter.mpool
DrWebTrojan.Siggen12.19093
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.Win32.NOON.CLNE
McAfee-GW-EditionBehavesLike.Win32.Ipamor.dc
SophosGeneric PUA FC (PUA)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.Swotter.mpool
MicrosoftTrojan:Win32/SpyNoon.SS!MTB
GridinsoftTrojan.Win32.Agent.oa
ArcabitTrojan.Generic.D22BD485
AhnLab-V3Malware/Win32.Trojanspy.C4364594
ZoneAlarmHEUR:Trojan-Spy.Win32.Noon.gen
GDataWin32.Trojan-Stealer.FormBook.S73BNI
CynetMalicious (score: 100)
ESET-NOD32a variant of Win32/Injector.EOSQ
BitDefenderThetaGen:NN.ZedlaF.34608.eq7@aKyq5g
ALYacTrojan.GenericKD.36426885
MalwarebytesTrojan.Injector
PandaTrj/CI.A
TrendMicro-HouseCallTrojanSpy.Win32.NOON.CLNE
RisingTrojan.Injector!8.C4 (CLOUD)
IkarusTrojan.Agent
FortinetW32/Injector.AFC!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Trojan.Win32.Agent.xahcbg?

Trojan.Win32.Agent.xahcbg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment