Backdoor

Backdoor.Win32.Agent.myuaxc malicious file

Malware Removal

The Backdoor.Win32.Agent.myuaxc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Agent.myuaxc virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • Uses Windows utilities for basic functionality

Related domains:

z.whorecord.xyz
a.tomx.xyz
IRZwxxPjeUhHVYPtBEK.IRZwxxPjeUhHVYPtBEK

How to determine Backdoor.Win32.Agent.myuaxc?


File Info:

crc32: C6763E2C
md5: a9c7fb76464588b90b6dd4fbb96bcdbb
name: A9C7FB76464588B90B6DD4FBB96BCDBB.mlw
sha1: 16533a3a42865008de96d5dadb7572696060f681
sha256: 8d16d53c256f90f392a7fe4f55ebdaac30cfd984155be174c1850adc7dadecff
sha512: 302127ebfd52720ee0f5ac5b31bce480610e7d2ba10f071aaae643bcf872f3de7491eb765bea34f4a64451243b9527fab9d100150d18b96a8ac2fbf80cf7d56e
ssdeep: 24576:sdW6Cdn2r8UnBwW53eIUKyfAd9HC60gYYPvv8rBdDM:sdW6CMB/b1d9i60gYYP8rM
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2016 Oleg N. Scherbakov
InternalName: 7ZSfxMod
FileVersion: 1.7.0.3900
CompanyName: Oleg N. Scherbakov
PrivateBuild: April 1, 2016
ProductName: 7-Zip SFX
ProductVersion: 1.7.0.3900
FileDescription: 7z Setup SFX (x86)
OriginalFilename: 7ZSfxMod_x86.exe
Translation: 0x0000 0x04b0

Backdoor.Win32.Agent.myuaxc also known as:

BkavW32.AIDetect.malware2
CynetMalicious (score: 100)
McAfeeArtemis!A9C7FB764645
CylanceUnsafe
SangforBackdoor.Win32.Agent.ky
AlibabaBackdoor:Win32/Generic.61bdaf55
K7GWTrojan ( 0057a8111 )
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.ACXU
APEXMalicious
AvastSNH:Script [Dropper]
ClamAVWin.Malware.Generic-9861153-0
KasperskyBackdoor.Win32.Agent.myuaxc
BitDefenderTrojan.GenericKD.46301630
MicroWorld-eScanTrojan.GenericKD.46301630
Ad-AwareTrojan.GenericKD.46301630
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0WEG21
McAfee-GW-EditionBehavesLike.Win32.BadFile.tc
FireEyeGeneric.mg.a9c7fb76464588b9
EmsisoftTrojan.GenericKD.46301630 (B)
JiangminHackTool.Agent.dhf
WebrootPua.Opencandy
eGambitUnsafe.AI_Score_53%
MicrosoftProgram:Win32/Wacapew.C!ml
AegisLabTrojan.Win32.Agent.m!c
GDataTrojan.GenericKD.46301630
VBA32Backdoor.Agent
MAXmalware (ai score=89)
MalwarebytesTrojan.Dropper.Generic
TrendMicro-HouseCallTROJ_GEN.R002C0WEG21
FortinetMalicious_Behavior.SB
AVGSNH:Script [Dropper]
Paloaltogeneric.ml

How to remove Backdoor.Win32.Agent.myuaxc?

Backdoor.Win32.Agent.myuaxc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment