Trojan

Trojan:Win32/Agent.KX removal tips

Malware Removal

The Trojan:Win32/Agent.KX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Agent.KX virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan:Win32/Agent.KX?


File Info:

name: 2EC89CE20C6C23897082.mlw
path: /opt/CAPEv2/storage/binaries/1fe36a6ddd7636b01e2aafb9a48230799ca08aa131073029094f52fbd0fbb566
crc32: 4C323A86
md5: 2ec89ce20c6c23897082aa48dea6f143
sha1: ef2f60b45fd591eba13ca4c01de0b5523f70a611
sha256: 1fe36a6ddd7636b01e2aafb9a48230799ca08aa131073029094f52fbd0fbb566
sha512: 2e39410a4e83c68798fd2c44a6d955aa0f7ff17c21d7068fc52eebfbbb4d443c8e87bd8cadd2b7a550fe45fab72deb3d4019b1329b3b5813b123f49c8a162c18
ssdeep: 1536:pTWhwiiehaL5o7F4iKEFXvx9oFqWGVYL4JbJKQx0hrITyh8GqGo:pEvrwL5oJ/XUrSyh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B9F3A543BB817F21C599033550D78BE5D22BDC54EEA28B1F229A3B1F3D73651E96220E
sha3_384: 98b0828f45048ceae3d1ae8441867a5234e2404dbf32c1b7195b8509f8691cc4d641cbbb59ddc00bd3822b9a7542a3c6
ep_bytes: 558bec6aff682861400068dc3b400064
timestamp: 2011-10-28 08:53:08

Version Info:

0: [No Data]

Trojan:Win32/Agent.KX also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop3.36301
MicroWorld-eScanGen:Variant.Ser.Barys.37
FireEyeGeneric.mg.2ec89ce20c6c2389
SkyhighBehavesLike.Win32.Dropper.ct
McAfeeArtemis!2EC89CE20C6C
ZillyaTrojan.Agent.Win32.230504
SangforTrojan.Win32.Agent.TQC
K7AntiVirusTrojan ( 0055e3dd1 )
AlibabaTrojan:Win32/Generic.214952aa
K7GWTrojan ( 0055e3dd1 )
Cybereasonmalicious.45fd59
ArcabitTrojan.Ser.Barys.37
BitDefenderThetaGen:NN.ZexaF.36744.jqZ@aSSmwFab
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.TQC
APEXMalicious
ClamAVWin.Trojan.Agent-343984
KasperskyHEUR:Trojan-Dropper.Win32.Dorifel.gen
BitDefenderGen:Variant.Ser.Barys.37
NANO-AntivirusTrojan.Win32.Drop.spejn
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10b51bb8
EmsisoftGen:Variant.Ser.Barys.37 (B)
GoogleDetected
F-SecureTrojan.TR/Zusy.285614
VIPREGen:Variant.Ser.Barys.37
TrendMicroTROJ_DROPPER.VLT
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Generic.wnyl
WebrootW32.Worm.Gen
VaristW32/Agent.OU.gen!Eldorado
AviraTR/Zusy.285614
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Unknown
Kingsoftmalware.kb.a.999
XcitiumTrojWare.Win32.Agent.jmff@4td4s5
MicrosoftTrojan:Win32/Agent.KX
ZoneAlarmHEUR:Trojan-Dropper.Win32.Dorifel.gen
GDataGen:Variant.Ser.Barys.37
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Zusy.R24396
ALYacGen:Variant.Ser.Barys.37
VBA32BScope.Trojan.MulDrop
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_DROPPER.VLT
RisingMalware.FakeDOC/ICON!1.9C3B (CLASSIC)
YandexTrojan.GenAsa!8oiAsLMG5nA
IkarusTrojan-Dropper
MaxSecureTrojan.Malware.2588.susgen
FortinetRiskware/FakeDoc
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Agent.KX?

Trojan:Win32/Agent.KX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment