Trojan

Win32/TrojanDownloader.Banload_AGen.W information

Malware Removal

The Win32/TrojanDownloader.Banload_AGen.W is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Banload_AGen.W virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/TrojanDownloader.Banload_AGen.W?


File Info:

name: 08B6138A00A8F8887EF1.mlw
path: /opt/CAPEv2/storage/binaries/3e6aa3796915a30fe459834153f1c06992fd97eb97629c9594f05151fbc9944d
crc32: 9EE85779
md5: 08b6138a00a8f8887ef1cb1cfbefa804
sha1: 44815f272114bb1fd3a8d23ae39eb27756aff94c
sha256: 3e6aa3796915a30fe459834153f1c06992fd97eb97629c9594f05151fbc9944d
sha512: 1b3b143ffb0bd6c444361e21df4055b497b296f362f12fac602a8acdc5cc1a476f08b2cc9c6040a7528a7c4427b80276ff4271b3f42edce2bcad220b057e61e8
ssdeep: 384:g6c0DPpJkrnsSNrcfUD6odG9rNAEeLMnkOH4ctgTjy86K5Rs0H:NpmTsSly26odGVNvkvK4xx2+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BF431923B3E388B7F8738AB82C702150EA3B3E245F786D7DAB75058E0D645904A95333
sha3_384: b605c0d69216839440c79b7e39bdbe39380f5b1bcd5f8cf31780fb0764ceca93e7d416437e6bc0fb0101d3f2fc07e220
ep_bytes: 558bec83c4e0535633c08945e08945e8
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Win32/TrojanDownloader.Banload_AGen.W also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.98345
FireEyeGeneric.mg.08b6138a00a8f888
VIPRETrojan.GenericKDZ.98345
CrowdStrikewin/malicious_confidence_90% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Banload_AGen.W
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKDZ.98345
AvastWin32:Malware-gen
SophosGeneric ML PUA (PUA)
F-SecureHeuristic.HEUR/AGEN.1364038
McAfee-GW-EditionBehavesLike.Win32.Generic.qz
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKDZ.98345 (B)
GDataTrojan.GenericKDZ.98345
AviraHEUR/AGEN.1364038
MAXmalware (ai score=85)
ArcabitTrojan.Generic.D18029
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
BitDefenderThetaGen:NN.ZexaF.36132.dGW@aWjqBHo
ALYacTrojan.GenericKDZ.98345
Cylanceunsafe
RisingTrojan.Generic@AI.100 (RDML:EZUc1oUJUbLKkqEMKiTsMg)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.203659910.susgen
FortinetW32/Krypt.PUA!tr
AVGWin32:Malware-gen

How to remove Win32/TrojanDownloader.Banload_AGen.W?

Win32/TrojanDownloader.Banload_AGen.W removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment