Trojan

What is “UDS:Trojan-Downloader.Win32.Agent.a”?

Malware Removal

The UDS:Trojan-Downloader.Win32.Agent.a is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan-Downloader.Win32.Agent.a virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
wp.svp72021.com

How to determine UDS:Trojan-Downloader.Win32.Agent.a?


File Info:

crc32: D9756F6D
md5: ad8c9d7a6447022aaecde3d143f0a6c2
name: AD8C9D7A6447022AAECDE3D143F0A6C2.mlw
sha1: cf56395c4564375b8c89fc35980ecca82b3522c9
sha256: eb155106c364e9ab6afcc98d84109909708cac447e081052f48f0b3f5a487130
sha512: a045ed4af8dc857b52d4b27f4a0eb3580893fcd2ab38bd96e010aa5ba0ab263c88cb40c990030201ff8b4820cf22a01519b213ddfb2dd94aa630e25dcf8bb263
ssdeep: 3072:a5mVSQoU1aG0VedDz2grufrSoH7XMBclT1CLevWGtVE0kFT2C:UmoQoU1anVCfoBrMMc7h0kl
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2021
InternalName: My_Cursor
FileVersion: 1, 0, 0, 1
ProductName: My_Cursor Application
ProductVersion: 1, 0, 0, 1
FileDescription: My_Cursor MFC Application
OriginalFilename: My_Cursor.EXE
Translation: 0x0409 0x04b0

UDS:Trojan-Downloader.Win32.Agent.a also known as:

BkavW32.FamVT.RazyNHmA.Trojan
DrWebTrojan.DownLoader40.28888
ALYacGen:Variant.Graftor.318157
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderGen:Variant.Graftor.318157
Cybereasonmalicious.a64470
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:Trojan-Downloader.Win32.Agent.a
MicroWorld-eScanGen:Variant.Graftor.318157
Ad-AwareGen:Variant.Graftor.318157
FireEyeGen:Variant.Graftor.318157
EmsisoftGen:Variant.Graftor.318157 (B)
eGambitUnsafe.AI_Score_91%
KingsoftWin32.Troj.Undef.(kcloud)
GDataGen:Variant.Graftor.318157
AhnLab-V3Malware/Win.Generic.C4544154
McAfeeRDN/GenericM
MAXmalware (ai score=84)
VBA32suspected of Trojan.Downloader.gen
TrendMicro-HouseCallTROJ_GEN.R002H09G621
FortinetW32/PossibleThreat

How to remove UDS:Trojan-Downloader.Win32.Agent.a?

UDS:Trojan-Downloader.Win32.Agent.a removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment