Trojan

How to remove “Win32/TrojanDropper.Agent.OWY”?

Malware Removal

The Win32/TrojanDropper.Agent.OWY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDropper.Agent.OWY virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality

How to determine Win32/TrojanDropper.Agent.OWY?


File Info:

name: B0A850355CFA5240AA35.mlw
path: /opt/CAPEv2/storage/binaries/5fe724a56969e0dbfeb0edbdbac58f2fd59d4775e86839fe54a39fbffa2ec7a2
crc32: 06080980
md5: b0a850355cfa5240aa3573eedf168c60
sha1: b24121917e208d3f3f953de50c96f0d788dafd33
sha256: 5fe724a56969e0dbfeb0edbdbac58f2fd59d4775e86839fe54a39fbffa2ec7a2
sha512: 43a4f6c139ac58100b5266f9632b4291a5272cd8d4c6fcc0ae941ef7d9f917e56d4c478d3dadf815c4b1ab757ffa9347cba96dd807137b402041e55789f23773
ssdeep: 384:S1iU0brcamAGCyvKrzpGbgWrh+G3rfvUuS7sN83otFZ9ZYD/HRN7HnYzltqBct:mi5akdU3rhP3LlSYN83E7YDvHYyu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ADE24CCF3C764E82E9A5FA308588DC1E79394F6718D1DA13A60CF8B20FA17D55719A2C
sha3_384: e436e3c470da095275be3f0915ebb651fc8d30494f80784cbf307a4ecf2c0da8f9e5764cfbcbca5f0d2fb07f16708a24
ep_bytes: 5587f787fe89e5681e20400087f787fe
timestamp: 2010-03-03 04:57:49

Version Info:

0: [No Data]

Win32/TrojanDropper.Agent.OWY also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Trojan.Heur.bqY@IvRGILm
FireEyeGeneric.mg.b0a850355cfa5240
CAT-QuickHealTrojanAPT.Maudi.ZZ4
ALYacGen:Trojan.Heur.bqY@IvRGILm
VIPREGen:Trojan.Heur.bqY@IvRGILm
SangforTrojan.Win32.Save.a
Cybereasonmalicious.55cfa5
BitDefenderThetaAI:Packer.B90EBEA01B
VirITTrojan.Win32.X-Heur.BFJ
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDropper.Agent.OWY
TrendMicro-HouseCallMal_MLWR-1
ClamAVWin.Trojan.4618843-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Trojan.Heur.bqY@IvRGILm
AvastWin32:Small-NOY [Drp]
Ad-AwareGen:Trojan.Heur.bqY@IvRGILm
DrWebTrojan.Hrun
ZillyaTrojan.Inject.Win32.54238
TrendMicroMal_MLWR-1
McAfee-GW-EditionBehavesLike.Win32.VirRansom.nc
SentinelOneStatic AI – Suspicious PE
Trapminemalicious.high.ml.score
SophosML/PE-A + Mal/EncPk-MP
APEXMalicious
GDataGen:Trojan.Heur.bqY@IvRGILm
JiangminTrojan/Inject.npq
AviraHEUR/AGEN.1230641
Antiy-AVLTrojan/Generic.ASMalwS.330C
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Win-Trojan/CSon6.Gen
McAfeeGenericRXCJ-OP!B0A850355CFA
MAXmalware (ai score=81)
VBA32BScope.Trojan.Agent
RisingTrojan.Generic@AI.96 (RDMK:cmRtazrxSR7RRsiDg62KXU9w2EZT)
YandexTrojan.GenAsa!TYLafQi64Zk
IkarusBackdoor.Winnt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.OWY!tr
AVGWin32:Small-NOY [Drp]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Win32/TrojanDropper.Agent.OWY?

Win32/TrojanDropper.Agent.OWY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment