Trojan

What is “VBS/TrojanDownloader.Agent.SHF”?

Malware Removal

The VBS/TrojanDownloader.Agent.SHF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VBS/TrojanDownloader.Agent.SHF virus can do?

  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A scripting utility was executed
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine VBS/TrojanDownloader.Agent.SHF?


File Info:

crc32: 6A730589
md5: 549e17f4431ffcdd648c5d5d2190b06c
name: cb9188711f2f406e99954b5ca0c62576890acedf4308cd93cf591d239311d4e2.vbe
sha1: 9dc39b6cfa3245219206c4949aba252d51a566bc
sha256: cb9188711f2f406e99954b5ca0c62576890acedf4308cd93cf591d239311d4e2
sha512: dd154b6f4e036da135375c55573097755d63df6bb5b2f22e18eb80daf73027908025de0bb8989df4305867cc4dcd4f3e8962075192901281de9982730fde944b
ssdeep: 96:R7fU3XiIPykc6Ewqdp2IakZblQylufAWbOankxdPWWNA4D4401Ta6ca6ca6ca6ck:RYni/ks97WyDNLh0O
type: ASCII text, with CRLF line terminators

Version Info:

0: [No Data]

VBS/TrojanDownloader.Agent.SHF also known as:

SymantecVBS.Downloader.Trojan
ESET-NOD32VBS/TrojanDownloader.Agent.SHF
KasperskyHEUR:Trojan-Downloader.VBS.Agent.gen
NANO-AntivirusTrojan.Script.Donoff.drfzbv
RisingDownloader.Agent!8.B23 (TOPIS:E0:owcH5OArEZD)
IkarusTrojan-Downloader.Script
CyrenTrojan.VOME-4
ArcabitHEUR.VBA.Trojan.10
ZoneAlarmHEUR:Trojan-Downloader.VBS.Agent.gen
MicrosoftTrojan:Win32/Tiggre!plock
GDataScript.Trojan-Downloader.VBS.AD
Qihoo-360virus.vbs.qexvmc.1

How to remove VBS/TrojanDownloader.Agent.SHF?

VBS/TrojanDownloader.Agent.SHF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment