Trojan

Trojan:Win32/Agent.IV removal instruction

Malware Removal

The Trojan:Win32/Agent.IV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Agent.IV virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Agent.IV?


File Info:

name: 2D78A5D0B2501D95D667.mlw
path: /opt/CAPEv2/storage/binaries/43f5d53f0a87f5b75f7105b4afae1878bb1c3ef3d760b619a717164f36fc97e1
crc32: CAA9047C
md5: 2d78a5d0b2501d95d66734a94c37698b
sha1: 3aed0524cba2d8c89aae7811255c24e4a064a847
sha256: 43f5d53f0a87f5b75f7105b4afae1878bb1c3ef3d760b619a717164f36fc97e1
sha512: a02571839d5f6db05c3f2c77077da4703bd09fd81cd075bf485e47c1577a2659665e59815ef633b4029b549694d73608df73ca0b2c4bf3715609ce972f6b972d
ssdeep: 3072:HcY2MnUstI5Ag7O40TqzMwvmjw5emJYSu+RvNghI:Hv2mt+/7OdThwus5emGS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T167D3932EF750B332F14641B81549069490ADF43635856C2AE7C29F1FBAE2EC7E6313A7
sha3_384: 1bdc03077b39a933b5e96a1b50f8efb639a42e3d05e49c8e9796f45425969899a7c37dfe4e2b7a7c7587ef4731650bde
ep_bytes: 68a01d4000e8eeffffff000000000000
timestamp: 2011-05-12 14:58:09

Version Info:

CompanyName: TeamViewer GmbH
FileDescription: TeamViewer Remote Control Application
FileVersion: 6.0.10511.0
InternalName: TeamViewer
LegalCopyright: TeamViewer GmbH
LegalTrademarks: TeamViewer
OriginalFilename: TeamViewer.exe
PrivateBuild: TeamViewer Remote Control Application
ProductName: TeamViewer
ProductVersion: 6.0
Translation: 0x0809 0x04b0

Trojan:Win32/Agent.IV also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Zbot.lmZ1
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Johnnie.331654
FireEyeGeneric.mg.2d78a5d0b2501d95
CAT-QuickHealTrojan.VB.Gen
ALYacGen:Variant.Johnnie.331654
CylanceUnsafe
ZillyaBackdoor.Bifrose.Win32.98691
AlibabaBackdoor:Win32/Bifrose.2747e660
Cybereasonmalicious.0b2501
VirITTrojan.Win32.Agent.BZIC
CyrenW32/Zbot.CE.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.DJQYKCZ
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Dropper.Zeus-9864303-0
KasperskyBackdoor.Win32.Bifrose.fkju
BitDefenderGen:Variant.Johnnie.331654
NANO-AntivirusTrojan.Win32.Zbot.doaqa
AvastWin32:Inject-AJO [Trj]
TencentMalware.Win32.Gencirc.10b55ad3
Ad-AwareGen:Variant.Johnnie.331654
TACHYONBackdoor/W32.VB-Bifrose.139264.D
SophosML/PE-A
ComodoTrojWare.Win32.Trojan.Zbot.~bvsh@40gkqt
DrWebTrojan.Proxy.20060
VIPREGen:Variant.Johnnie.331654
TrendMicroTROJ_GEN.R002C0DG522
McAfee-GW-EditionPWS-Zbot.gen.hx
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Johnnie.331654 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Johnnie.331654
JiangminTrojanSpy.Zbot.cxdk
WebrootW32.Bot.Gen
AviraTR/Spy.Zbot.fbu
Antiy-AVLTrojan/Generic.ASMalwS.31
KingsoftWin32.Hack.Bifrose.fk.(kcloud)
ArcabitTrojan.Johnnie.D50F86
ViRobotTrojan.Win32.A.Zbot.516096
MicrosoftTrojan:Win32/Agent.IV
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Zbot.R8949
McAfeePWS-Zbot.gen.hx
MAXmalware (ai score=100)
VBA32Backdoor.Bifrose
MalwarebytesMalware.AI.3128106696
TrendMicro-HouseCallTROJ_GEN.R002C0DG522
RisingBackdoor.Bifrose!8.B24 (CLOUD)
YandexTrojanSpy.Zbot!3PyUOL6nq9w
IkarusTrojan-Spy.Win32.SpyEyes
MaxSecureTrojan.Malware.2389027.susgen
FortinetW32/Injector.GKF!tr
BitDefenderThetaAI:Packer.D22403C021
AVGWin32:Inject-AJO [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Agent.IV?

Trojan:Win32/Agent.IV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment