Malware

Win32:Agent-BCHI [Adw] removal

Malware Removal

The Win32:Agent-BCHI [Adw] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Agent-BCHI [Adw] virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32:Agent-BCHI [Adw]?


File Info:

name: B8E7A84FD09C331531BC.mlw
path: /opt/CAPEv2/storage/binaries/9d6f1bffa3c81194b549b77e6a6337152711f942f7f590193f0c56c6e6c2269a
crc32: 56B93A82
md5: b8e7a84fd09c331531bc91a0755edcdc
sha1: b21fcd1d7e30ad4377ca17aef6fdc38148fb8116
sha256: 9d6f1bffa3c81194b549b77e6a6337152711f942f7f590193f0c56c6e6c2269a
sha512: 7bb457f9bd0c4f9fe428a051e80ef4d5d753f7b2ac63fb84cd7ecf6c4babddeb4cefbdbd38818aecdbbc4c1439f5acf61e44c4ddc73fbd7206f5cf1db131d2a8
ssdeep: 24576:l3U776UW6BKg+C0iop9oMmg/3aKPwkb6+CMNsqSSDMLjNJfridWnKaKLssxB:m7GUdB4cMn/hIpqSSDsx1JnKaKLssxB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EB06E818BB12CE35C6858F320D8BCFA5BB32BD419A924753B3F0733EAD71255692AD14
sha3_384: 7d1f20f7d1928949149e6a506a00c3b8f72b71a6bd29fcd86dc266b51410148224fbf615402b7769d8b9e5c9b1df2568
ep_bytes: 819fe0fc00000000407e80fc00000000
timestamp: 2019-02-07 12:04:13

Version Info:

0: [No Data]

Win32:Agent-BCHI [Adw] also known as:

BkavW32.AIDetectMalware
FireEyeGeneric.mg.b8e7a84fd09c3315
McAfeeGenericRXAA-FA!B8E7A84FD09C
MalwarebytesGeneric.Malware/Suspicious
BitDefenderThetaGen:NN.ZexaCO.36196.0xZ@am63Dbk
CyrenW32/S-df5d381c!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
Paloaltogeneric.ml
AvastWin32:Agent-BCHI [Adw]
SophosGeneric Reputation PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.wt
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Cylanceunsafe
RisingTrojan.Generic@AI.100 (RDML:JvahfUpCViGvrd94/imDgw)
YandexTrojan.Razy!qunHSM9RN2k
AVGWin32:Agent-BCHI [Adw]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Win32:Agent-BCHI [Adw]?

Win32:Agent-BCHI [Adw] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment