Malware

How to remove “Win32/Agent.ABGH”?

Malware Removal

The Win32/Agent.ABGH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent.ABGH virus can do?

  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Agent.ABGH?


File Info:

crc32: 0A9E55ED
md5: 93fb69eb3b2460402313072b74eeb453
name: ecp_key.exe
sha1: 9fdf08b196df8bc7924c2780c6b5ea369cffd325
sha256: d9282c5ed18ed9187b29a1054d71d89409c267256a3a9ef633d18d53ef897699
sha512: 32cc8676184e0e6c3cb6a0fd86d5d0b7a59efc0ff25c20c47e1188285ee6f44d68bf716226c7269f73ab4e2dfedf8ed799b25f468c485123dff37a9509ff6805
ssdeep: 12288:LUOUbexhuw4UjYg7Bl203bjiwjlmXlw5wcu:sAup5gdtPiwJklgwcu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileDescription:
FileVersion: 10.11.31.3
CompanyName: FBR
Translation: 0x0409 0x04e4

Win32/Agent.ABGH also known as:

BkavHW32.Packed.
DrWebTrojan.Siggen8.64125
MicroWorld-eScanDropped:Trojan.GenericKD.42110947
Qihoo-360Win32/Trojan.Dropper.6a1
McAfeeArtemis!93FB69EB3B24
CylanceUnsafe
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderDropped:Trojan.GenericKD.42110947
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.196df8
TrendMicroTROJ_GEN.R002C0PLD19
CyrenW32/Trojan.CXLX-7143
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Malware.Avemaria-7460258-0
GDataDropped:Trojan.GenericKD.42110947
KasperskyTrojan-Dropper.Win32.Dapato.qarn
AlibabaTrojanDropper:Win32/Dapato.a7088924
NANO-AntivirusTrojan.Win32.TrjGen.gpylws
AegisLabTrojan.Multi.Generic.4!c
Ad-AwareDropped:Trojan.GenericKD.42110947
SophosMal/Generic-S
ComodoMalware@#3f8k1torxx7sn
F-SecureTrojan.TR/Agent.cgnft
Invinceaheuristic
McAfee-GW-EditionRDN/Generic.dx
FireEyeGeneric.mg.93fb69eb3b246040
EmsisoftDropped:Trojan.GenericKD.42110947 (B)
IkarusTrojan.Win32.Agent
WebrootW32.Trojan.Gen
AviraTR/Agent.cgnft
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D2828FE3
ZoneAlarmTrojan-Dropper.Win32.Dapato.qarn
MicrosoftTrojan:Win32/Skeeyah.A!MTB
AhnLab-V3Trojan/Win32.RL_Azorult.R299438
ALYacDropped:Trojan.GenericKD.42110947
MAXmalware (ai score=88)
MalwarebytesTrojan.Dropper
PandaTrj/CI.A
ZonerTrojan.Win32.85451
ESET-NOD32Win32/Agent.ABGH
TrendMicro-HouseCallTROJ_GEN.R002C0PLD19
TencentWin32.Trojan.Falsesign.Hvjf
YandexTrojan.Agent!VTVq1tnExww
SentinelOneDFI – Malicious PE
eGambitPE.Heur.InvalidSig
FortinetW32/Agent.ABGH!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.7175203.susgen

How to remove Win32/Agent.ABGH?

Win32/Agent.ABGH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment