Trojan

Should I remove “Trojan.Win32.Agent.xbnxrl”?

Malware Removal

The Trojan.Win32.Agent.xbnxrl is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Agent.xbnxrl virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Win32.Agent.xbnxrl?


File Info:

name: 650A5CCBDE1B7D0E7C40.mlw
path: /opt/CAPEv2/storage/binaries/536faa4cdfcd172e8928edeadc46d34ef752e6db23f43401fba9046031558605
crc32: 0988DE66
md5: 650a5ccbde1b7d0e7c40d1ef68f68c21
sha1: 95919e6c061c2cd84d1702b58f5d26659c4ed836
sha256: 536faa4cdfcd172e8928edeadc46d34ef752e6db23f43401fba9046031558605
sha512: 2364578ce2573ef435af88f15106029479b2e175db820fb07e35fef249553e8cd1bbf7c69236b27bde115d80280a28b3c6185a6a30c35b9d749202e546fa9cea
ssdeep: 3072:KbAUogI3IC5UtbYcPztjRf8/EChPPIpCnmHeQVTjoaU8VSPoXalN:KbHoG2Ut/PJjRfW0oEoa9QPoX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BDA494929C64AF45FE16453427956EBA004E7D2F66E4422C785CFA0B337399B30AFD0B
sha3_384: 5e4b297e7e33fefb32d378cf0d27b5c72fa46dd8d24d81541eb69e018aecfdc1958e4ea866addbb8b30e2794a8c9ebd6
ep_bytes: 68e4914200e8eeffffff000000000000
timestamp: 2019-01-19 13:34:56

Version Info:

CompanyName: UEFI
ProductName: Kawaii-Unicorn
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Kawaii-Unicorn
OriginalFilename: Kawaii-Unicorn.exe
Translation: 0x0804 0x04b0

Trojan.Win32.Agent.xbnxrl also known as:

BkavW32.AIDetectMalware
AVGWin32:Evo-gen [Trj]
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.94CCEEA9.A.B3DE2089
FireEyeGeneric.mg.650a5ccbde1b7d0e
SkyhighBehavesLike.Win32.Generic.gt
McAfeeGenericRXTC-TT!650A5CCBDE1B
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.VBGen.Win32.1
SangforSuspicious.Win32.Save.vb
K7AntiVirusP2PWorm ( 0054717e1 )
K7GWP2PWorm ( 0054717e1 )
BitDefenderThetaGen:NN.ZevbaF.36804.Dm0@auM3n0mb
VirITTrojan.Win32.VBUnicorn.AA
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/VBClone.E
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Generic-9967832-0
KasperskyTrojan.Win32.Agent.xbnxrl
BitDefenderGeneric.Dacic.94CCEEA9.A.B3DE2089
NANO-AntivirusTrojan.Win32.VB.jownbp
SUPERAntiSpywareTrojan.Agent/Gen-Tedy
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.VB.ha
EmsisoftGeneric.Dacic.94CCEEA9.A.B3DE2089 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.MulDrop20.3145
VIPREGeneric.Dacic.94CCEEA9.A.B3DE2089
SophosTroj/VB-KCP
SentinelOneStatic AI – Malicious PE
GDataGeneric.Dacic.94CCEEA9.A.B3DE2089
JiangminTrojan.VB.bmcx
VaristW32/VB.VM.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.VBClone
Kingsoftmalware.kb.a.961
ArcabitGeneric.Dacic.94CCEEA9.A.B3DE2089
ZoneAlarmTrojan.Win32.Agent.xbnxrl
MicrosoftTrojan:Win32/Fareit.VB!MTB
GoogleDetected
AhnLab-V3Trojan/Win.Fareit.R626300
VBA32SScope.Trojan.VB
ALYacGeneric.Dacic.94CCEEA9.A.B3DE2089
Cylanceunsafe
PandaTrj/CI.A
RisingTrojan.VBClone!1.B5C7 (CLASSIC)
YandexTrojan.VBClone!PdFgAWLsQ/8
IkarusTrojan.Win32.VBClone
MaxSecureVirus.W32.GenericML.xnet
FortinetW32/VBClone.D!tr
DeepInstinctMALICIOUS

How to remove Trojan.Win32.Agent.xbnxrl?

Trojan.Win32.Agent.xbnxrl removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment