Trojan

Win32/TrojanDownloader.Agent.RPM removal guide

Malware Removal

The Win32/TrojanDownloader.Agent.RPM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Agent.RPM virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/TrojanDownloader.Agent.RPM?


File Info:

crc32: 6945D77C
md5: 38a89932778553079b4b3f2d5ea0b271
name: 38A89932778553079B4B3F2D5EA0B271.mlw
sha1: 1aa62181735aca313ce40157d9cec71a4bad2be7
sha256: 1e07b3aba28c55f279516c05b66197efdd127412a5ee58faef98eae18abad6e9
sha512: 6492c51f6953317d70ec2fcf1b0189a8087179407e5bb31d23dcdecc84229c3d84b87e736764e146f60045b2fcbc02b64c7308ed41844fdaa09ac5d0ac204ce7
ssdeep: 384:rQIZMVX1tfBJ5XnWs7Jjrb1xq3UZU9bq4o4GFZg:rQtVlplXXRZU9bInFZ
type: PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

0: [No Data]

Win32/TrojanDownloader.Agent.RPM also known as:

BkavW32.AIDetect.malware2
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.392083
CylanceUnsafe
SangforRiskware.Win32.Agent.ky
AlibabaTrojanDownloader:Win32/Generic.5a898335
Cybereasonmalicious.277855
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.RPM
APEXMalicious
AvastFileRepMalware
KasperskyUDS:DangerousObject.Multi.Generic
NANO-AntivirusTrojan.Win32.Graftor.cymvch
ViRobotTrojan.Win32.Downloader.37888.CN
TencentWin32.Trojan-downloader.Agent.Llrk
SophosML/PE-A
ComodoMalware@#3vaffa0j3g0w5
BitDefenderThetaGen:NN.ZexaF.34266.cmWfams592mi
TrendMicroMal_DLDER
McAfee-GW-EditionBehavesLike.Win32.Backdoor.nm
FireEyeGeneric.mg.38a8993277855307
SentinelOneStatic AI – Suspicious PE
AviraTR/Dldr.Agent.vyoqr
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2806B53
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win32.Downloader.C170911
McAfeeArtemis!38A899327785
MAXmalware (ai score=99)
VBA32Trojan.Dynamer
PandaTrj/GdSda.A
TrendMicro-HouseCallMal_DLDER
YandexTrojan.DL.Agent!mc9IP8+3WHM
IkarusTrojan-Downloader.Win32.Agent
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Win32/TrojanDownloader.Agent.RPM?

Win32/TrojanDownloader.Agent.RPM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment