Trojan

How to remove “Trojan.Win32.Agentb.kjhp”?

Malware Removal

The Trojan.Win32.Agentb.kjhp is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Agentb.kjhp virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • Collects information about installed applications
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Agentb.kjhp?


File Info:

crc32: BC9120CB
md5: 079cce6657c100aa3af7952631700678
name: 079CCE6657C100AA3AF7952631700678.mlw
sha1: 306b63f55b8ba18809955003d41313f3493baa82
sha256: 978a8858ac3adf2088106a658e2333dd30642f00c34b3f10975c3a7b99bb7f54
sha512: 3aaf001cd44b90356d9b111235b71db7e76f8656f033af2fa2bd2ac41409113c6ce894f653bd6e0f7d62d254fcf2b315a64c413109853504f3b0ae572043ea9f
ssdeep: 24576:uxumPtwAiyvA/7bGIkFXNr9ypZQf3E/DzLhukd5TkWCfTZgugu:g3Pvo/3G9XNr2A38XhDTkpfTZgugu
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Racebehind Corporation. All rights reserved
InternalName: Clear Scale Twosheet
FileVersion: 6.7.7.925
CompanyName: Racebehind Corporation
ProductName: Racebehindxae Then radioxae
ProductVersion: 6.7.7.925
FileDescription: Racebehind Then radio Ableshall
OriginalFilename: Last.dll
Translation: 0x0409 0x04b0

Trojan.Win32.Agentb.kjhp also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36363577
FireEyeGeneric.mg.079cce6657c100aa
McAfeeGenericRXNR-DT!079CCE6657C1
VIPREWin32.Malware!Drop
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.36363577
K7GWTrojan ( 005780601 )
K7AntiVirusTrojan ( 005780601 )
CyrenW32/Dridex.CB.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyTrojan.Win32.Agentb.kjhp
AlibabaTrojan:Win32/Dridex.bf6b8257
Ad-AwareTrojan.GenericKD.36363577
EmsisoftTrojan.GenericKD.36363577 (B)
ComodoTrojWare.Win32.Agent.bgyft@0
F-SecureTrojan.TR/AD.Dridex.tesdy
DrWebTrojan.Dridex.735
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
AviraTR/AD.Dridex.tesdy
MAXmalware (ai score=83)
MicrosoftTrojan:Win32/Dridex.SS!MTB
ArcabitTrojan.Generic.D22ADD39
ZoneAlarmTrojan.Win32.Agentb.kjhp
GDataTrojan.GenericKD.36363577
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R366878
BitDefenderThetaGen:NN.ZedlaF.34574.cv8@a8NuSAmi
ALYacSpyware.Banker.Dridex
ESET-NOD32Win32/Dridex.DD
RisingTrojan.Kryptik!8.8 (TFE:5:HK9PN0TZuzL)
eGambitUnsafe.AI_Score_83%
FortinetW32/Kryptik.HJMZ!tr
WebrootW32.Trojan.Gen
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Dridex.HgkASPQA

How to remove Trojan.Win32.Agentb.kjhp?

Trojan.Win32.Agentb.kjhp removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment