Malware

Win32/Agent.WUF removal

Malware Removal

The Win32/Agent.WUF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent.WUF virus can do?

  • Starts servers listening on 0.0.0.0:80
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

www.shample.ru

How to determine Win32/Agent.WUF?


File Info:

crc32: 68907C90
md5: 3e43f04a075f01ff9eea882f0faaef35
name: 3E43F04A075F01FF9EEA882F0FAAEF35.mlw
sha1: 6c9c6d5c4d77eabf36abc2d5e0e3859c04c65835
sha256: 5cae16b61dacfcdc80064687fbfb2df945f16579b38bd0bbb793a712fbdf9dda
sha512: c524f58f62443e0ff50289d7c3a97ccf565b1d4d570f8a3a9a2b667cfdfe65495ca6c5a8254da4bc1ba4dba1d5df4f9ff5770b8ac914f0b6706f0744e287d079
ssdeep: 384:BjhSbFojJDNWdgUKaeKUcKZ9w7S+ihQmLypj56RV2LLvEDHQb0nuUTeRjzP+fXN:BjdLUTb72hspVvTEDwAnpTeR/ANn4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Agent.WUF also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.AgentWDCR.JFT
CAT-QuickHealTrojan.Dorv.A5
Qihoo-360HEUR/QVM10.1.10BB.Malware.Gen
ALYacTrojan.AgentWDCR.JFT
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 004b50681 )
BitDefenderTrojan.AgentWDCR.JFT
K7GWTrojan ( 004b50681 )
Cybereasonmalicious.a075f0
BaiduWin32.Trojan.Agent.abz
CyrenW32/Agent.LZLQ-2061
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.12095594-1
KasperskyTrojan-Dropper.Win32.Agent.bjsjrz
NANO-AntivirusTrojan.Win32.Crypted.digbrg
Ad-AwareTrojan.AgentWDCR.JFT
EmsisoftTrojan.AgentWDCR.JFT (B)
ComodoTrojWare.Win32.Dorv.A@5v28rd
F-SecureTrojan.TR/Agent.33824
DrWebTrojan.Siggen6.30523
ZillyaTrojan.Agent.Win32.514843
TrendMicroTROJ_DORV.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.nm
FireEyeGeneric.mg.3e43f04a075f01ff
SophosML/PE-A
SentinelOneStatic AI – Suspicious PE – Downloader
JiangminTrojan/Generic.baomx
AviraTR/Agent.33824
Antiy-AVLTrojan[Dropper]/Win32.Agent.bjsjrz
MicrosoftTrojan:Win32/Shampel.A
GridinsoftTrojan.Win32.Agent.vb!s1
ArcabitTrojan.AgentWDCR.JFT
ZoneAlarmTrojan-Dropper.Win32.Agent.bjsjrz
GDataTrojan.AgentWDCR.JFT
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Generic.C745686
Acronissuspicious
McAfeeGenericRXEP-LM!3E43F04A075F
MAXmalware (ai score=85)
VBA32TrojanDropper.Sysn
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/OCJ.F
ZonerTrojan.Win32.27920
ESET-NOD32Win32/Agent.WUF
TrendMicro-HouseCallTROJ_DORV.SM
RisingDropper.Agent!8.2F (TFE:dGZlOgXm+zvGHMVKGg)
YandexTrojan.Agent!RPleL5SKB60
IkarusTrojan.Win32.Agent
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.WUF!tr
BitDefenderThetaGen:NN.ZexaF.34804.cuX@aS5WoBgi
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Win32/Agent.WUF?

Win32/Agent.WUF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment