Malware

Win32/Agent.ZPL malicious file

Malware Removal

The Win32/Agent.ZPL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent.ZPL virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine Win32/Agent.ZPL?


File Info:

crc32: F5C7E604
md5: 86224a5fa17e07a37890025fb0dab4ae
name: 86224A5FA17E07A37890025FB0DAB4AE.mlw
sha1: 17b722988eadddabace9032486544d9d4194f79b
sha256: 26649f5258ed18f71aab3210baf5104cdec35ef846cfd656fd0e6889c2c772dc
sha512: e9594fbbe87883054c12fb5da9d8b65bd44c4a248ac13cac41a182f2d38dcd23d12f83e0dc4260d05f3bdd644ed4f543b2bf018c3adba7ea452a273949a39b22
ssdeep: 12288:Jjm74mLpwTXalGZYaz+7QBWTBI2LP4sZRC+1NLBMAzGjsVXx0wsDHx9R:sLdht1NLmrx9R
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright(C) 2017
InternalName: Grapefruit Z
FileVersion: 2.0.0.0
ProductName: Grapefruit Z
ProductVersion: 2.0.0
FileDescription: Grapefruit Z
OriginalFilename: GZ46.exe
Translation: 0x0804 0x04b0

Win32/Agent.ZPL also known as:

K7AntiVirusTrojan ( 005321ed1 )
LionicTrojan.Win32.Generic.4!c
CynetMalicious (score: 99)
ALYacGen:Variant.Graftor.930642
CylanceUnsafe
ZillyaTrojan.Agent.Win32.889983
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005321ed1 )
Cybereasonmalicious.fa17e0
CyrenW32/S-c1308d3e!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.ZPL
APEXMalicious
AvastWin32:Trojan-gen
BitDefenderGen:Variant.Graftor.930642
MicroWorld-eScanGen:Variant.Graftor.930642
TencentMalware.Win32.Gencirc.10b50d1f
Ad-AwareGen:Variant.Graftor.930642
SophosMal/Generic-S
ComodoTrojWare.Win32.Agent.ZPLT@7qey12
BitDefenderThetaGen:NN.ZexaF.34236.Fu0@aSWuZnej
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.86224a5fa17e07a3
EmsisoftGen:Variant.Graftor.930642 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Multi.bpi
AviraHEUR/AGEN.1108419
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojan:Win32/Skeeyah.A!rfn
GDataGen:Variant.Graftor.930642
Acronissuspicious
McAfeeGenericRXAA-AA!86224A5FA17E
MAXmalware (ai score=98)
VBA32Trojan.Skeeyah
PandaTrj/Genetic.gen
YandexTrojan.GenAsa!i7a+/QfGkxg
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.TAR!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Win32/Agent.ZPL?

Win32/Agent.ZPL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment