Trojan

How to remove “Win32/TrojanDownloader.Agent.FTO”?

Malware Removal

The Win32/TrojanDownloader.Agent.FTO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Agent.FTO virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/TrojanDownloader.Agent.FTO?


File Info:

crc32: A76DEE03
md5: 9896f3d2daabd8df12aefad5e94051fe
name: 9896F3D2DAABD8DF12AEFAD5E94051FE.mlw
sha1: 3d67da773dbe7ec35b1bda4b50d33d448bb47147
sha256: 0b6d331c90041dc8996da865a2da6fc9530d68abe88819104d88f90dc1c2aee0
sha512: 1775a134215b4af31c593ca7fd54c33913dcbfea9ebd93d145427c24a5fbbff9b015a5d0200c350a54ef99ad28dcdd6761e83f6d914b93a90575f93b7c04fc75
ssdeep: 3072:PXocyqUue49Woqk+zIvW/9f/xK1zRLNd1pZ7lvwnAxgNAijtv1wmDa:P4ZqUPoWoqkHvW/hxKDDplvwnASNAI1
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: TODO: (C) x3002x4fddx7559x6240x6709x6743x5229x3002
InternalName: slitajslshalshoubliaokewfanD.dll
FileVersion: 1.0.0.1
CompanyName: TODO:
ProductName: TODO:
ProductVersion: 1.0.0.1
FileDescription: TODO:
OriginalFilename: slitajslshalshoubliaokewfanD.dll
Translation: 0x0804 0x03a8

Win32/TrojanDownloader.Agent.FTO also known as:

SangforTrojan.Win32.Save.a
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.FTO
KasperskyUDS:Trojan.Win32.Agentb.a
MicroWorld-eScanTrojan.GenericKD.37471404
TencentWin32.Trojan-downloader.Agent.Huze
Ad-AwareTrojan.GenericKD.37471404
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.37471404
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataTrojan.GenericKD.37471404
AhnLab-V3Malware/Win.Krypt.C4594674
McAfeeArtemis!9896F3D2DAAB
MAXmalware (ai score=83)
IkarusTrojan-Downloader.Win32.Agent

How to remove Win32/TrojanDownloader.Agent.FTO?

Win32/TrojanDownloader.Agent.FTO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment