Malware

Win32/Agent.PDI removal tips

Malware Removal

The Win32/Agent.PDI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent.PDI virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Anomalous binary characteristics

How to determine Win32/Agent.PDI?


File Info:

crc32: 1C682FC3
md5: 77bd8ebdf91997115283c78d067d71c3
name: 77BD8EBDF91997115283C78D067D71C3.mlw
sha1: ef6be80187f716afef2fa34dc54f9e83c134fd42
sha256: 88ac993494a7d8a77d1649493da7bd7b19bc433319f2ce349ca7471c66482908
sha512: bb9f98c2af003c6f43909f0946c144274ebc60d00063b6625cedc2b7c7fcde3985c5bd62a9bda6ed5ba3d0b94f4443b828a844a6f0748f385838d0d9f2c3ac69
ssdeep: 768:v8yZeBr2jL10MqybSFlhAh6P0cyzRKjhOfQ1IahiROxXJn:v80upM6PwKQyIc9
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright Adobe Systems Incorporated 2004
InternalName: 2
FileVersion: 1
CompanyName: Adobe Incorporated
PrivateBuild:
LegalTrademarks:
Comments: Copyright Adobe Incorporated 2004
ProductName: Adobe
SpecialBuild:
ProductVersion: 8, 0, 0, 0
FileDescription: Adobe Acrobat Internet Update
OriginalFilename: wuweb.exe
Translation: 0x0409 0x04b0

Win32/Agent.PDI also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055e3dd1 )
Elasticmalicious (high confidence)
DrWebTrojan.Wuweb.1
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.RP.bq2@biSKE!jb
CylanceUnsafe
ZillyaTrojan.Genome.Win32.207176
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojan:Win32/Dreef.9a0583d4
K7GWTrojan ( 0055e3dd1 )
Cybereasonmalicious.df9199
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.PDI
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Agent-767687
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Trojan.Heur.RP.bq2@biSKE!jb
NANO-AntivirusTrojan.Win32.Wuweb.bdbflr
MicroWorld-eScanGen:Trojan.Heur.RP.bq2@biSKE!jb
TencentWin32.Trojan.Crypt.Ajmb
Ad-AwareGen:Trojan.Heur.RP.bq2@biSKE!jb
SophosML/PE-A + Troj/Dreef-A
ComodoMalware@#2iuixaxp0wbk
BitDefenderThetaAI:Packer.6354B32F1F
VIPRETrojan.Win32.Generic!SB.0
McAfee-GW-EditionBehavesLike.Win32.Trojan.mc
FireEyeGeneric.mg.77bd8ebdf9199711
EmsisoftGen:Trojan.Heur.RP.bq2@biSKE!jb (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Genome.ankw
AviraTR/Crypt.ZPACK.Gen
eGambitUnsafe.AI_Score_97%
Antiy-AVLTrojan/Generic.ASMalwS.EA1475
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Heur.RP.E03CCE
GDataGen:Trojan.Heur.RP.bq2@biSKE!jb
McAfeeGenericRXAA-AA!77BD8EBDF919
MAXmalware (ai score=100)
VBA32Trojan-Downloader.Win32.Pendix.a
RisingTrojan.Generic@ML.96 (RDML:01xeVZATsBVmRWSuviaYyw)
YandexTrojan.GenAsa!usa8ZoVZ5Wc
IkarusTrojan.Win32.Genome
MaxSecureTrojan.Malware.1284855.susgen
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Agent.PDI?

Win32/Agent.PDI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment