Malware

WinGo/Agent.I removal guide

Malware Removal

The WinGo/Agent.I is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What WinGo/Agent.I virus can do?

  • A scripting utility was executed
  • Collects information to fingerprint the system

How to determine WinGo/Agent.I?


File Info:

crc32: 61F76AB9
md5: 81dbaf810dbfaaf66094e3c3f5c1c341
name: 81DBAF810DBFAAF66094E3C3F5C1C341.mlw
sha1: fa48e069fbb9daf1f107bdea8013d0e140dcef4d
sha256: cf845e1239adcd973ecd0d7aebe8307d300a1c4bc203662cf287a9c837203eda
sha512: 192ffec425034629a88246cff23d43002c9363f36b376bd8f0c759ea4620a337d2ebabb4a0c9f6b86c9f8f15125a83812cc7a7be65b73c0d05252aa27e7a6774
ssdeep: 98304:k+9u8x5nJS5wbJAiGtw7LBeFazYHTWip+A:kdQ5J0w9HRBeFazA
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

WinGo/Agent.I also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00575d541 )
LionicTrojan.Win32.Denes.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.37380216
CylanceUnsafe
ZillyaTrojan.Denes.Win32.339
SangforTrojan.Win32.Denes.div
AlibabaTrojan:Win32/Denes.facfa6aa
K7GWTrojan ( 00575d541 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of WinGo/Agent.I
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Denes.div
BitDefenderTrojan.GenericKD.37380216
ViRobotTrojan.Win32.Z.Denes.7287808
MicroWorld-eScanTrojan.GenericKD.37380216
Ad-AwareTrojan.GenericKD.37380216
SophosMal/Generic-R + Troj/ChaChi-A
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0RHD21
McAfee-GW-EditionBehavesLike.Win32.VirRansom.vh
FireEyeGeneric.mg.81dbaf810dbfaaf6
EmsisoftTrojan.GenericKD.37380216 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Denes.ge
AviraTR/Crypt.XPACK.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D23A6078
GDataTrojan.GenericKD.37380216
AhnLab-V3Trojan/Win.Generic.C4589493
McAfeeArtemis!81DBAF810DBF
MAXmalware (ai score=88)
VBA32Trojan.Denes
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0RHD21
RisingTrojan.Generic@ML.100 (RDMK:mPKuetY8uQK/15xh/yizHQ)
YandexTrojan.Denes!whRwgl4YYxE
IkarusTrojan.WinGo.Agent
MaxSecureTrojan.Malware.74369798.susgen
FortinetW32/Agent.A!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove WinGo/Agent.I?

WinGo/Agent.I removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment