Malware

CheatTool.Agent (file analysis)

Malware Removal

The CheatTool.Agent is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What CheatTool.Agent virus can do?

  • Unconventionial language used in binary resources: Arabic (Uae)
  • The binary likely contains encrypted or compressed data.

How to determine CheatTool.Agent?


File Info:

crc32: B8EEB1C3
md5: 84d82617668703e2037d16dc380b9698
name: 84D82617668703E2037D16DC380B9698.mlw
sha1: 6d7dcb070ccd9a252f262adf81ae546458a9d9d2
sha256: 696028d7f4f9225f7d8250ebfb3505c42a3fc82d97d905f289cc6314c56aace4
sha512: 04e1c58b93dd749a46b136f451178f722e6bf5e2d6c7dae3c4f42de416a8ba72a7ce173929b3d460046fe92ed661b17526449e061359900f950ba04b0d81fc5d
ssdeep: 3072:S0BqhzJDtgOcpQ3bvvUaJHVUi2+nPQXfUCZfwyLqVU0hak:S0BqhzJxgOcq3bXUji29XfUCZY05
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 IFH. All right reserved.
InternalName: Injection.exe
FileVersion: 0.0.0.6
CompanyName: IFH Official
PrivateBuild: Build by IFH
ProductName: IFHxae Applicationxae
ProductVersion: 0.0.0.6
FileDescription: Members VVIP
OriginalFilename: Injection.exe
Translation: 0x0409 0x04b0

CheatTool.Agent also known as:

BkavW32.AIDetect.malware2
K7AntiVirusUnwanted-Program ( 00568e2f1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Zusy.306126
CylanceUnsafe
K7GWUnwanted-Program ( 00568e2f1 )
Cybereasonmalicious.766870
CyrenW32/Trojan.GCG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GameHack.ENY potentially unsafe
APEXMalicious
AvastWin32:DropperX-gen [Drp]
BitDefenderGen:Variant.Zusy.306126
MicroWorld-eScanGen:Variant.Zusy.306126
Ad-AwareGen:Variant.Zusy.306126
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Injector.cc
FireEyeGeneric.mg.84d82617668703e2
EmsisoftGen:Variant.Zusy.306126 (B)
AviraTR/Downloader.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.305E395
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Zusy.306126
AhnLab-V3Malware/Win32.RL_Generic.R350924
McAfeeGenericRXKT-WB!84D826176687
MAXmalware (ai score=81)
VBA32BScope.Trojan.Ashify
MalwarebytesCheatTool.Agent
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazp+ymZs/a+lUin8d2vEEv79)
IkarusTrojan-Downloader
AVGWin32:DropperX-gen [Drp]

How to remove CheatTool.Agent?

CheatTool.Agent removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment