Categories: Trojan

Win32/TrojanDownloader.Agent.EET removal guide

The Win32/TrojanDownloader.Agent.EET is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Agent.EET virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
s3.amazonaws.com
ocsp.digicert.com
crl3.digicert.com
s3.us-east-2.amazonaws.com

How to determine Win32/TrojanDownloader.Agent.EET?


File Info:

crc32: C3F67131md5: 75fb735b89a430553dde2e1773b1d04ename: 75FB735B89A430553DDE2E1773B1D04E.mlwsha1: 953b11097b92bcac2d6643aad2e945fe6930268asha256: 1de77241217a98961940a341bbbba31e79cf15e82ebf321e06276a3322b69745sha512: a03abff44771a379dfe39803e82fbe6af1ee77ec777ca2a8cac7cea17c89138126f9aa6edc311771f44a3a64e931e00193ff40d1d464560245f61fbe03d57ff3ssdeep: 24576:jG9jlKKJGs1Co/rX0RcNu84qdylAqvTT3gXq:SPyXVqvITwatype: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/TrojanDownloader.Agent.EET also known as:

K7AntiVirus Trojan-Downloader ( 005705901 )
Lionic Trojan.Win32.Foreign.4!c
Elastic malicious (high confidence)
Cynet Malicious (score: 99)
ALYac Trojan.GenericKD.40514466
Cylance Unsafe
Zillya Downloader.Agent.Win32.371762
Sangfor Ransom.Win32.Foreign.obdj
Alibaba Ransom:Win32/Foreign.462f6f16
K7GW Trojan-Downloader ( 005705901 )
Cybereason malicious.b89a43
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/TrojanDownloader.Agent.EET
APEX Malicious
Avast Win32:Malware-gen
Kaspersky Trojan-Ransom.Win32.Foreign.obdj
BitDefender Trojan.GenericKD.40514466
NANO-Antivirus Trojan.Win32.RiskGen.fikytf
MicroWorld-eScan Trojan.GenericKD.40514466
Tencent Malware.Win32.Gencirc.114d4eb1
Ad-Aware Trojan.GenericKD.40514466
Sophos Mal/Generic-S
Comodo Malware@#3h9hmq6mzd19s
BitDefenderTheta Gen:NN.ZexaF.34266.7uW@a8MgaCgi
McAfee-GW-Edition BehavesLike.Win32.Dropper.dh
FireEye Generic.mg.75fb735b89a43055
Emsisoft Trojan.GenericKD.40514466 (B)
Jiangmin Trojan.Foreign.ezf
Avira HEUR/AGEN.1123947
Antiy-AVL Trojan/Generic.ASMalwS.281B302
Microsoft Trojan:Win32/Occamy.C
Arcabit Trojan.Generic.D26A33A2
SUPERAntiSpyware Trojan.Agent/Generic
GData Trojan.GenericKD.40514466
AhnLab-V3 Malware/Win32.Generic.R238286
McAfee Artemis!75FB735B89A4
MAX malware (ai score=100)
VBA32 TrojanRansom.Foreign
Malwarebytes Trojan.Downloader
Panda Trj/GdSda.A
Rising Trojan.Agent!1.B4F9 (CLASSIC)
Yandex Trojan.GenAsa!cR9Uu23oKdk
Ikarus Trojan-Downloader.Win32.Agent
AVG Win32:Malware-gen
Paloalto generic.ml

How to remove Win32/TrojanDownloader.Agent.EET?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

What is “Malware.AI.1232470033”?

The Malware.AI.1232470033 is considered dangerous by lots of security experts. When this infection is active,…

55 mins ago

Tedy.527363 removal guide

The Tedy.527363 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Should I remove “Zusy.472379 (B)”?

The Zusy.472379 (B) is considered dangerous by lots of security experts. When this infection is…

1 hour ago

Win32.Morto.A removal tips

The Win32.Morto.A is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Win32/Downloader.Agent.CP potentially unwanted information

The Win32/Downloader.Agent.CP potentially unwanted is considered dangerous by lots of security experts. When this infection…

2 hours ago

Trojan:MSIL/Zusy.PTHT!MTB removal tips

The Trojan:MSIL/Zusy.PTHT!MTB is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago