Malware

About “Win32/uTorrent_AGen.A potentially unwanted” infection

Malware Removal

The Win32/uTorrent_AGen.A potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/uTorrent_AGen.A potentially unwanted virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/uTorrent_AGen.A potentially unwanted?


File Info:

name: E351DDF140A1F4A9AABF.mlw
path: /opt/CAPEv2/storage/binaries/71e95a4d5bda9b0e3a66182a045f4dd0083bb90ac74d59e02e64f4998474eb10
crc32: FC0EF0D1
md5: e351ddf140a1f4a9aabf25850a74a994
sha1: a17c15bad420aef85c869d353e79d2c1fcd24853
sha256: 71e95a4d5bda9b0e3a66182a045f4dd0083bb90ac74d59e02e64f4998474eb10
sha512: 19b413fc80f29196236de4c9c55ff4b5f7552e8cc2f0008583bd132646a17d9cffc038f3e562a5dfa57e8562e48f025a1d2fd08b00d00401c4ad6d3d28f0110f
ssdeep: 49152:8FZ3GaoPljoq8xMuLa6i+OQ2SqV8h5fkpYmktSULfUhNzJN:eCjoq86fLQtqV8h58TgS2chNtN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D8A633D6C5603D9AD5AA147E00663BDC0462EE4BD5B80E373A20713FAE771F1F922E52
sha3_384: 90fec17e2589bfe9b223cc6ada9dfcf6eabf869ff70775e43c9fa902950d7f537874d485a0078c79b53a7bd95713f79e
ep_bytes: 60be0060a8008dbe00b097ffc787106d
timestamp: 2022-11-16 01:38:09

Version Info:

CompanyName: BitTorrent Inc.
FileDescription: µTorrent
FileVersion: 3.6.0.46590
InternalName: uTorrent.exe
OriginalFilename: uTorrent.exe
LegalCopyright: ©2020 BitTorrent, Inc. All Rights Reserved.
ProductName: µTorrent
ProductVersion: 3.6.0.46590
SpecialBuild: stable34 stable
Translation: 0x0409 0x04e4

Win32/uTorrent_AGen.A potentially unwanted also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
AVGWin32:Evo-gen [Trj]
FireEyeGeneric.mg.e351ddf140a1f4a9
SkyhighArtemis!Trojan
McAfeeArtemis!E351DDF140A1
MalwarebytesPUP.Optional.BundleInstaller.DDS
SangforTrojan.Win32.Save.a
ESET-NOD32a variant of Win32/uTorrent_AGen.A potentially unwanted
CynetMalicious (score: 100)
AvastWin32:Evo-gen [Trj]
Antiy-AVLGrayWare/Win32.uTorrent
Cylanceunsafe
RisingPUA.uTorrent!8.F60A (CLOUD)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.3411146.susgen
FortinetRiskware/uTorrent_AGen
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_90% (D)

How to remove Win32/uTorrent_AGen.A potentially unwanted?

Win32/uTorrent_AGen.A potentially unwanted removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment