Trojan

Trojan.Win32.Agentb.kjhz removal guide

Malware Removal

The Trojan.Win32.Agentb.kjhz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Agentb.kjhz virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Collects information about installed applications

How to determine Trojan.Win32.Agentb.kjhz?


File Info:

crc32: CEEA109E
md5: 4f2a2098a3f8ce01df8d3deac6acb19f
name: 4F2A2098A3F8CE01DF8D3DEAC6ACB19F.mlw
sha1: 273296690446da612a4aa574513ccb8abeed8d49
sha256: f4aaca975059e9bd029b5f7b0e7089eef5422aae9c676ab160467ef3424afd2b
sha512: d89e4ec64339afde208003802c476440bc0c5b06c5b8f6d323c1605f091ce87a5232c52c7eaf6793deef5841b703bc72b99c88a0be12a86360f6c3b3e9a44cd1
ssdeep: 24576:WVWfnaVoffEQmyO378WTkvEKT9Hgce1BHbo+Cm:4uaq34yDWTkvvT9Hgdbo+C
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Outelectric Corporation. All rights reserved
InternalName: Cry Take Closethey
FileVersion: 1.2.2.855
CompanyName: Outelectric Corporation
ProductName: Outelectricxae Beat busyxae
ProductVersion: 1.2.2.855
FileDescription: Outelectric Beat busy Planemiddle
OriginalFilename: Nor.dll
Translation: 0x0409 0x04b0

Trojan.Win32.Agentb.kjhz also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36363472
FireEyeGeneric.mg.4f2a2098a3f8ce01
Qihoo-360Win32/Trojan.Dridex.HgkASPQA
ALYacSpyware.Banker.Dridex
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.36363472
K7GWTrojan ( 005669021 )
K7AntiVirusTrojan ( 005669021 )
BitDefenderThetaGen:NN.ZedlaF.34574.5u8@aOAAKDei
CyrenW32/Kryptik.DJT.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32Win32/Dridex.DD
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Agentb.kjhz
RisingTrojan.Dridex!8.33B (CLOUD)
Ad-AwareTrojan.GenericKD.36363472
SophosMal/Generic-S
ComodoTrojWare.Win32.Agent.yhauh@0
F-SecureTrojan.TR/AD.Dridex.onxvf
DrWebTrojan.Dridex.735
TrendMicroTrojanSpy.Win32.DRIDEX.THBAHBA
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.36363472 (B)
IkarusTrojan.Win32.Dridex
AviraTR/AD.Dridex.onxvf
MAXmalware (ai score=82)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Dridex.MXT!MTB
ArcabitTrojan.Generic.D22ADCD0
AhnLab-V3Malware/Win32.RL_Generic.R366845
ZoneAlarmTrojan.Win32.Agentb.kjhz
GDataTrojan.GenericKD.36363472
CynetMalicious (score: 100)
McAfeeGenericRXNR-FM!4F2A2098A3F8
TrendMicro-HouseCallTrojanSpy.Win32.DRIDEX.THBAHBA
eGambitUnsafe.AI_Score_93%
FortinetW32/Dridex.DD!tr
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]

How to remove Trojan.Win32.Agentb.kjhz?

Trojan.Win32.Agentb.kjhz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment