Backdoor

Backdoor.Win32.Agent.myuawf removal tips

Malware Removal

The Backdoor.Win32.Agent.myuawf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Agent.myuawf virus can do?

  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • Uses Windows utilities for basic functionality
  • Anomalous binary characteristics

Related domains:

qOWepxMYYcNNHMckDBBjZwE.qOWepxMYYcNNHMckDBBjZwE

How to determine Backdoor.Win32.Agent.myuawf?


File Info:

crc32: 2D247B6E
md5: 100b1855ede51a794138ed7afc0b3b0f
name: 100B1855EDE51A794138ED7AFC0B3B0F.mlw
sha1: b703188e3c785242c6979869a7ed72ba7521db35
sha256: a2ce378d90b6d315bc4c75e03888cde53cd8fbbf9aaa47fea5b44d426773cbbc
sha512: 659a8fd3ae10979ecaf61f8148f6a6b3d10b078c6b475d32d15495fc6ed46bde18312929fa99a0f7fb546ce1efead9ac25be29083e51f77aae196f3fde83032d
ssdeep: 49152:TdW6CAXPH1W7ISiGYuElHTR9Zkr2R4OC10ARwbQ9g:TdyGPMriGGHTR9Zkr9ibUg
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2016 Oleg N. Scherbakov
InternalName: 7ZSfxMod
FileVersion: 1.7.0.3900
CompanyName: Oleg N. Scherbakov
PrivateBuild: April 1, 2016
ProductName: 7-Zip SFX
ProductVersion: 1.7.0.3900
FileDescription: 7z Setup SFX (x86)
OriginalFilename: 7ZSfxMod_x86.exe
Translation: 0x0000 0x04b0

Backdoor.Win32.Agent.myuawf also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0057a8c81 )
DrWebTrojan.MulDrop17.7471
ALYacTrojan.GenericKD.36892338
CylanceUnsafe
SangforBackdoor.Win32.Agent.myuawf
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaBackdoor:Win32/Generic.bb2180f0
K7GWTrojan ( 0057a8c81 )
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/Agent.ACXU
AvastWin32:Malware-gen
KasperskyBackdoor.Win32.Agent.myuawf
BitDefenderTrojan.GenericKD.36892338
MicroWorld-eScanTrojan.GenericKD.36892338
TencentWin32.Backdoor.Agent.Dszb
Ad-AwareTrojan.GenericKD.36892338
SophosMal/Generic-S + Troj/Downld-BV
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.36892338
EmsisoftTrojan.Dropper (A)
JiangminHackTool.Agent.dhf
WebrootPua.Opencandy
eGambitPE.Heur.InvalidSig
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Woreflint.A!cl
ArcabitTrojan.Generic.D232EEB2
GDataTrojan.GenericKD.36892338
McAfeeArtemis!100B1855EDE5
MAXmalware (ai score=88)
MalwarebytesTrojan.Dropper.Generic
PandaTrj/CI.A
FortinetW32/Agent.ACXU!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Backdoor.Win32.Agent.myuawf?

Backdoor.Win32.Agent.myuawf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment