Malware

What is “WinGo/Agent.J”?

Malware Removal

The WinGo/Agent.J is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What WinGo/Agent.J virus can do?

  • Uses Windows utilities for basic functionality

How to determine WinGo/Agent.J?


File Info:

crc32: 3A754FC6
md5: 186ffe9c46109e8d9f7e3cd91a8e4705
name: 186FFE9C46109E8D9F7E3CD91A8E4705.mlw
sha1: 68e020db90fe22e39bdbcb45b8ae385a72ab4783
sha256: 06f97df48f563f81efe37ba1b73876f45b34006a4c3dd7f08530b532c26348d2
sha512: 71235da445660ff7349df2c9009df27b729eaaefa89431aa11ab284c9632a767b570e0b7fadc4817ed2e8feb7be0cbfd37ab9cf3fb104804c0249f3c9c55bf6d
ssdeep: 24576:gkAGEvOzrjr5MflPv5nCNLRXCdeYhaNKoIKGEx1BpIvZQL+QslVc4RlR/+AA:g/bOuPkUDcfRqQL+zlVc6R/pA
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: Master CollectionJanuary 2021 - BreakPoint
InternalName: ams_runtime
FileVersion: 1.0.0.0
Comments: Created with AutoPlay Media Studio (www.indigorose.com)
ProductVersion: 1.0.0.0
OriginalFilename: autorun.exe
Translation: 0x0409 0x0000

WinGo/Agent.J also known as:

K7AntiVirusTrojan ( 00577b021 )
CAT-QuickHealTrojan.Ymacco
ALYacTrojan.GenericKD.36338828
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaTrojan:Application/WinGo.a05e87d8
K7GWTrojan ( 00577b021 )
Cybereasonmalicious.c46109
CyrenW32/Trojan.HSNW-8238
ESET-NOD32a variant of WinGo/Agent.J
APEXMalicious
AvastFileRepMalware
BitDefenderTrojan.GenericKD.36338828
MicroWorld-eScanTrojan.GenericKD.36338828
Ad-AwareTrojan.GenericKD.36338828
SophosMal/Generic-S
ComodoMalware@#rmbbvhhvboiw
BitDefenderThetaGen:NN.ZexaF.34628.HD0@aCVBtLfi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.th
FireEyeTrojan.GenericKD.36338828
EmsisoftTrojan.GenericKD.36338828 (B)
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Ymacco.AA06
ArcabitTrojan.Generic.D22A7C8C
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.GenericKD.36338828
McAfeeArtemis!186FFE9C4610
MAXmalware (ai score=81)
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H09BE21
RisingTrojan.Agent!8.B1E (CLOUD)
IkarusTrojan.WinGo.Agent
FortinetW32/PossibleThreat
AVGFileRepMalware
Paloaltogeneric.ml

How to remove WinGo/Agent.J?

WinGo/Agent.J removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment