Malware

How to remove “Win32/Agent.RYP”?

Malware Removal

The Win32/Agent.RYP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent.RYP virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Agent.RYP?


File Info:

crc32: 1D29E323
md5: 2175f2db6fe184c66f6c71edd286bc56
name: 2175F2DB6FE184C66F6C71EDD286BC56.mlw
sha1: f96cce8acde215ec132f5d99e1b5a6b9d8ca91bf
sha256: 2cfcb2e793aae3c19ef13376acfcd3410fd2b3143b6d2c0f82d544dc2d3cd0b0
sha512: 6316ebbad8cd5d05453f70b7718cf0c40192b4ae676bc1dd6525924536a46ff4395b9cf042d41163243fa84e9fe54fedd847a541927d92663d332d49aaf5ee07
ssdeep: 12288:LN2hHofubhSoWTDxkHeXTcNQe8Nf3agWS/k:LoheuQTDWHuskNi1S/
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Win32/Agent.RYP also known as:

LionicTrojan.Win32.Generic.4!c
McAfeeArtemis!2175F2DB6FE1
CylanceUnsafe
ZillyaTrojan.Genome.Win32.119974
AlibabaTrojan:Win32/MalwareF.35ea2b02
BaiduWin32.Trojan.Agent.asf
CyrenW32/Risk.BZQL-9057
ESET-NOD32Win32/Agent.RYP
APEXMalicious
AvastFileRepMalware
NANO-AntivirusTrojan.Win32.Agent.dangqx
SophosMal/Generic-S
ComodoMalware@#21yl1ahvxibjn
VIPRETrojan.Win32.Generic.pak!cobra
McAfee-GW-EditionArtemis!Trojan
JiangminTrojan/Genome.bdvy
WebrootW32.Trojan.dx!uhs
eGambitGeneric.Malware
MicrosoftTrojan:Win32/Wacatac.B!ml
VBA32Trojan.Genome.te
PandaTrj/CI.A
YandexTrojan.Agent!kGj3nNAC3Oc
IkarusTrojan.Win32.Agent
FortinetW32/Dx.UHS!tr
AVGFileRepMalware

How to remove Win32/Agent.RYP?

Win32/Agent.RYP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment