Trojan

TrojanDownloader:Win32/Agenttiny removal instruction

Malware Removal

The TrojanDownloader:Win32/Agenttiny is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Agenttiny virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine TrojanDownloader:Win32/Agenttiny?


File Info:

name: 575827C357CF2A2C5067.mlw
path: /opt/CAPEv2/storage/binaries/5ac72ffaa225cae3812df08b5f723e71dacc5ab9714300ea8544390a28ebe0be
crc32: 19B196D8
md5: 575827c357cf2a2c5067e9b53f1dfbec
sha1: ba0eca0d64ef24c8fc286a2ffbe23a9bef72ee06
sha256: 5ac72ffaa225cae3812df08b5f723e71dacc5ab9714300ea8544390a28ebe0be
sha512: 4a6dfab7e7e8b1fce306ceb8124822bcb6d208f8ffbf29356321458b2fc8fe3d27026b7378fa18e03e66cadaa970448e5c0215a3cfb2e26987eefc62c82ebf1d
ssdeep: 384:vhokqhB0kQ5OaJF8JUKcdp43mirILu16WxI5bra6G:vhokqh4/sUKcjIILWUbrVG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T194825C475B505033FF870FB0AAF9C64B8E39B2621FC070DF65B2818D2E957A45B1426B
sha3_384: 3da619a7ee6fce1d79cf470e7a2d2d302e0a59b75436881c10c7f0ebc9eeafe5f293dc0d948ff2bb8001e7def5c79471
ep_bytes: e804040000e937fdffff8bff558bec81
timestamp: 2012-07-27 19:26:53

Version Info:

CompanyName: Adobe Systems Incorporated
FileDescription: Adobe Reader
FileVersion: 10.1.4.38
LegalCopyright: Copyright 1984-2012 Adobe Systems Incorporated and its licensors. All rights reserved.
ProductName: Adobe Reader
ProductVersion: 10.1.4.38
OriginalFilename: AcroRd32Info.exe
Translation: 0x0409 0x04e4

TrojanDownloader:Win32/Agenttiny also known as:

ClamAVWin.Trojan.Agent-402522
McAfeeArtemis!575827C357CF
ZillyaTrojan.Agent.Win32.274621
SangforTrojan.Win32.Agenttiny.Vz92
K7AntiVirusTrojan ( 00008f3e1 )
AlibabaTrojan:Win32/Agenttiny.2cd4c133
K7GWTrojan ( 00008f3e1 )
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/Agent.QZV
KasperskyTrojan.Win32.Agent.dmzl
NANO-AntivirusTrojan.Win32.TrjGen.yqkds
AvastFileRepMalware [Trj]
TencentWin32.Trojan.FalseSign.Fajl
DrWebTrojan.Siggen2.15725
TrendMicroTROJ_GEN.R002C0DEP23
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
Webrootw32.malware.gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Agent
XcitiumMalware@#1tpawj9n0qimu
ZoneAlarmTrojan.Win32.Agent.dmzl
MicrosoftTrojanDownloader:Win32/Agenttiny
GoogleDetected
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallTROJ_GEN.R002C0DEP23
RisingDownloader.Agenttiny!8.8D5 (CLOUD)
IkarusTrojan-Downloader.Agenttiny
FortinetW32/Agent.DMZL!tr
AVGFileRepMalware [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove TrojanDownloader:Win32/Agenttiny?

TrojanDownloader:Win32/Agenttiny removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment