Home Malware Programs Trojans Trojan.Dropper.Agent

Trojan.Dropper.Agent

Posted: October 23, 2008

Threat Metric

Ranking: 1,877
Threat Level: 8/10
Infected PCs: 454,915
First Seen: July 24, 2009
Last Seen: October 17, 2023
OS(es) Affected: Windows

Trojan.Dropper.Agent is a serious Trojan downloader infection. Trojan.Dropper.Agent is known to download or even install other malicious files and programs onto an infected computer. Trojan.Dropper.Agent does this without letting the computer user know what is happening. You may notice slower computer performance and decreased network speed if you have the Trojan.Dropper.Agent Trojan horse infection. Trojan.Dropper.Agent is a serious threat to the security, personal and financial data stored on your computer. It is recommended that you detect and remove Trojan.Dropper.Agent with a good spyware scan tool.

Aliases

Agent.AXKV [AVG]W32/Agent.AGLX!tr [Fortinet]Trojan-PWS.Win32.Nilage.bbr [Ikarus]Dropper/Win32.OnlineGameHack [AhnLab-V3]PWS:Win32/QQpass.BC [Microsoft]Mal/HckPk-C [Sophos]TR/Dldr.Agent.beiq [AntiVir]TrojWare.Win32.TrojanDropper.Agent.aglx [Comodo]Trojan.Downloader.JLEA [BitDefender]Trojan-Dropper.Win32.Agent.aglx [Kaspersky]W32/Heuristic-210!Eldorado [F-Prot]Generic PWS.y [McAfee]TrojanDropper.Agent.aglx [CAT-QuickHeal]Injector.DXB [AVG]W32/Refroso.IGN!tr [Fortinet]
More aliases (362)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.59 MB (4590592 bytes)
MD5: abc8d5cf58cba5cc542613963932956d
Detection count: 314
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: October 27, 2021
%ALLUSERSPROFILE%\wta40029.exe File name: wta40029.exe
Size: 345.28 KB (345288 bytes)
MD5: a3eccb5fe657617380f3384ad00fcb58
Detection count: 281
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: August 11, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.83 MB (4835328 bytes)
MD5: f4548f3b764f46354069789db91bb249
Detection count: 108
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 27, 2018
C:\Users\<username>\AppData\Local\Temp\g.exe File name: g.exe
Size: 4.6 MB (4602880 bytes)
MD5: 6addfd7a4ffe8a0760eaf75c7e6e093c
Detection count: 89
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\g.exe
Group: Malware file
Last Updated: December 16, 2022
C:\Users\<username>\AppData\Roaming\9gzi4\vsahy.exe File name: vsahy.exe
Size: 246.78 KB (246784 bytes)
MD5: 3aca09ff120d9422b665192878328da9
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\9gzi4
Group: Malware file
Last Updated: September 7, 2018
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.91 MB (4913152 bytes)
MD5: fa348b6cf007a950740eb95ae0d8fb3b
Detection count: 65
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.41 MB (4414976 bytes)
MD5: 172158fb9e5801849aa1796defc2af19
Detection count: 51
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.63 MB (4630528 bytes)
MD5: 696b50319315180bef7219a636dc1262
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 3.64 MB (3648000 bytes)
MD5: 4728951b96627fe010592e3848108ea9
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
name.exe File name: name.exe
Size: 6.32 MB (6323200 bytes)
MD5: 217abb37d27df329ccf81282edf9211e
Detection count: 32
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.66 MB (4660224 bytes)
MD5: 3009c96aec905e145a3ae4d790498283
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.6 MB (4602880 bytes)
MD5: 260ca8a3530e114d755d1ca7d28498f4
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
C:\Users\<username>\AppData\Local\Temp\APD4qVhLr\APD4qVhLr.exe File name: APD4qVhLr.exe
Size: 4.83 MB (4837888 bytes)
MD5: 4ecb8775e5a616d5c221dbf5d333c146
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\APD4qVhLr\APD4qVhLr.exe
Group: Malware file
Last Updated: August 22, 2021
%ALLUSERSPROFILE%\wta16625.exe File name: wta16625.exe
Size: 320.69 KB (320696 bytes)
MD5: 644cfc1e631766d9060d7e1150f062d4
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: August 11, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.6 MB (4603392 bytes)
MD5: 45c0acb6c8ea87b6d4f238105b4df851
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.83 MB (4835328 bytes)
MD5: 7fa5638f16fe9f75221d746f1dac0958
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: December 17, 2020
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.81 MB (4815872 bytes)
MD5: 4d39a3eb4318788d2814f6dc397f34bd
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.59 MB (4590592 bytes)
MD5: 0e45f3c93c447dedbcc4c8d7199ac50b
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%ALLUSERSPROFILE%\wta19530.exe File name: wta19530.exe
Size: 337.08 KB (337080 bytes)
MD5: 6e199631d2bfdc94119e3c603d05763b
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: August 11, 2017
%ALLUSERSPROFILE%\wta4415.exe File name: wta4415.exe
Size: 320.69 KB (320696 bytes)
MD5: 293ec9807f740d079fd9b46514af1a90
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: August 11, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.61 MB (4618240 bytes)
MD5: 07601c9470181b8263f52ea923dec456
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.4 MB (4408832 bytes)
MD5: 33fa30a6208c4760ab3131eba4028770
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 4, 2020
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.6 MB (4602880 bytes)
MD5: 299ca6dfdba2a4f7d397807c62b007b6
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017
%WINDIR%\rss\csrss.exe File name: csrss.exe
Size: 4.6 MB (4602368 bytes)
MD5: 4b132a730639b1ad2b9be8d6f41081ce
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\rss
Group: Malware file
Last Updated: September 13, 2017

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%ALLUSERSPROFILE%\Application Data\Windows Shell Experiment.exe%ALLUSERSPROFILE%\Application Data\wta[NUMBERS].exe%ALLUSERSPROFILE%\Microsoft Services\lsm.exe%ALLUSERSPROFILE%\Windows Shell Experiment.exe%ALLUSERSPROFILE%\wta[NUMBERS].exe%APPDATA%\AdobeUpdate\AdobeUpdate.exe%APPDATA%\Maintenance\apps\maintenance.exe%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\The.Family.exe%APPDATA%\WindowsDefender\MSASCuiL.exe%TEMP%\The.Family.exe%WINDIR%\Install_WM.exe%WINDIR%\RSS\csrss.exe%WINDIR%\System32\Tasks\nethost task%WINDIR%\Tasks\nethost task.job

Additional Information

The following directories were created:
%APPDATA%\Java Sun

Related Posts

Loading...