Backdoor

Backdoor.Win32.Agent.myuivg removal

Malware Removal

The Backdoor.Win32.Agent.myuivg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Agent.myuivg virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family

How to determine Backdoor.Win32.Agent.myuivg?


File Info:

name: 3321449147252D5F5893.mlw
path: /opt/CAPEv2/storage/binaries/477df0f75afdff887e46327507167f8a45dc31f791335aaf44c9c7f5134125bf
crc32: FD528EC1
md5: 3321449147252d5f5893ff0f4159da2b
sha1: efeb17c2153f0b612d087f43fa7cc74f2fc3f5e0
sha256: 477df0f75afdff887e46327507167f8a45dc31f791335aaf44c9c7f5134125bf
sha512: 818bcf12d746e76cf264089c34282a3e4b522a01766309b38673741494a45a95eff7da7db4a4fb0bab0e8814193a4a2270ec159a6790820838f70bcf8370a4ba
ssdeep: 24576:c5rnuuBzdkYqYlU+EtSKMsIdqzoh2pueP3j:cxnRzeQskmj
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13E455C29E74B15B4DA635771859EEA7B9B047A348022AE3FFF4BDA0CB4331133C85256
sha3_384: 2de58b6ebc247b9236a2f3f4950d5c87d6744bf174636e40f459b0005e8abe7a23f2eb7a732d82960d6bb837a899c20c
ep_bytes: 83ec0cc705b823520000000000e8ae18
timestamp: 2022-08-21 15:41:51

Version Info:

0: [No Data]

Backdoor.Win32.Agent.myuivg also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeTrojan.GenericKDZ.91223
McAfeeGenericRXTY-AR!332144914725
ESET-NOD32a variant of Win32/GenKryptik.FZBK
ClamAVWin.Spyware.Redlinestealer-9964510-0
KasperskyBackdoor.Win32.Agent.myuivg
BitDefenderTrojan.GenericKDZ.91223
MicroWorld-eScanTrojan.GenericKDZ.91223
AvastWin32:Trojan-gen
Ad-AwareTrojan.GenericKDZ.91223
EmsisoftTrojan.GenericKDZ.91223 (B)
McAfee-GW-EditionGenericRXTY-AR!332144914725
APEXMalicious
JiangminTrojanSpy.Stealer.abgp
AviraTR/Kryptik.pidup
MAXmalware (ai score=85)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmBackdoor.Win32.Agent.myuivg
GDataWin32.Trojan.PSE.1DV6CWU
GoogleDetected
AhnLab-V3Trojan/Win.RedLineStealer.R512127
VBA32Trojan.Inject
CylanceUnsafe
IkarusTrojan.Win32.RedlineStealer
RisingSpyware.Convagent!8.12330 (TFE:5:vyWeQ8A22bD)
SentinelOneStatic AI – Suspicious PE
AVGWin32:Trojan-gen
PandaTrj/GdSda.A

How to remove Backdoor.Win32.Agent.myuivg?

Backdoor.Win32.Agent.myuivg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment