Backdoor

How to remove “Backdoor.Win32.Agent.myudef”?

Malware Removal

The Backdoor.Win32.Agent.myudef is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Agent.myudef virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Backdoor.Win32.Agent.myudef?


File Info:

crc32: 4790EE5C
md5: 527aafb84de77dc3fe50995fa50b7e4b
name: 527AAFB84DE77DC3FE50995FA50B7E4B.mlw
sha1: 92630a2905e3228dd4c86d91d2f33c2a4988ca86
sha256: 00bc11273917ded822b84c16303e0074f5f641354bf140e2f60bb907dac580e0
sha512: 7c0e6a85778800033d2c9654107dcd1ffc7ea6a1514a0cb2b4e1e59b9ac579c2919561865646b614d05fcc8abecce256a038d55cf97fbadc7101cc11c466e69a
ssdeep: 24576:H1V1ZVpp4W9fPG9uBmkkMBJXuoU5SZ4ondsH4KkluxSvXqlw09ggC:T1ZVEqfOABxkMrubqndhKkl2Zw0qgC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: leymus
ProductVersion: 1.0.0.0
FileVersion: 1.0.0.0
FileDescription:
Translation: 0x0000 0x04b0

Backdoor.Win32.Agent.myudef also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ZillyaBackdoor.SpyGate.Win32.5247
SangforTrojan.Win32.Save.a
Cybereasonmalicious.905e32
CyrenW32/Kryptik.EZJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.FJIV
APEXMalicious
AvastNSIS:CrypterX-gen [Trj]
ClamAVWin.Packed.Filerepmalware-9864117-0
KasperskyBackdoor.Win32.Agent.myudef
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34088.sqW@aOPJWafK
McAfee-GW-EditionBehavesLike.Win32.GenDownloader.tc
EmsisoftTrojan.Crypt (A)
AviraHEUR/AGEN.1140896
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:Win32/StopCrypt!ml
ZoneAlarmHEUR:Trojan-PSW.Win32.Coins.gen
GDataWin32.Trojan.BSE.HLJWVB
AhnLab-V3Malware/Win32.Generic.C2853746
McAfeeArtemis!527AAFB84DE7
MalwarebytesMalware.AI.1294164741
RisingTrojan.Kryptik!1.C6FC (CLASSIC)
IkarusMalware.Win32.AVEvader
AVGNSIS:CrypterX-gen [Trj]

How to remove Backdoor.Win32.Agent.myudef?

Backdoor.Win32.Agent.myudef removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment