Crack

What is “CrackTool.Agent.Steam”?

Malware Removal

The CrackTool.Agent.Steam is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What CrackTool.Agent.Steam virus can do?

  • Executable code extraction
  • Creates RWX memory
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine CrackTool.Agent.Steam?


File Info:

crc32: 735246CD
md5: b935b93d18821e82aed5bbae39872a7b
name: B935B93D18821E82AED5BBAE39872A7B.mlw
sha1: 871bdf34716eafad253c37469000ca80ad9cc6eb
sha256: 69748107a1027338c69559889a500540bbb7db1f4241e7988669e791263a255d
sha512: fe46501f975dd9b85f267646c9c345cca96d6ca9d7eed835c5db792be8f5f1629d622f99cf6a00b65ee21098c05956755189e9933706c4f78a0a21c774e2c7b5
ssdeep: 24576:bKpb+Lpmbz9gAXilDGgP9GX0dc4hxU4BVoXoo1DJXLFT4mknD1pVOGXSCbAln:K+AzYDGsC0/9cDXT4t1iCcln
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: *!ReLOADeD!*
InternalName: steam_api
FileVersion: 5,1,0,0
CompanyName: *!ReLOADeD!*
ProductName: Steam API
ProductVersion: 5,1,0,0
FileDescription: Steam API
OriginalFilename: steam_api
Translation: 0x0409 0x04b0

CrackTool.Agent.Steam also known as:

Elasticmalicious (high confidence)
CAT-QuickHealTrojan.Dynamer.9665
McAfeeGenericRXCT-EU!B935B93D1882
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabHacktool.Win32.Gamehack.3!c
SangforHacktool.Win32.Gamehack.gen
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00563cb01 )
K7AntiVirusTrojan ( 00563cb01 )
SymantecPacked.Vmpbad!gen4
APEXMalicious
KasperskyHEUR:HackTool.Win32.Gamehack.gen
AlibabaHackTool:Win32/Crack.f07ef69a
TencentWin32.Trojan.Generic.Pezd
SophosSteam (PUA)
F-SecureTrojan.TR/Black.Gen2
TrendMicroTROJ_GEN.R066C0OJO20
McAfee-GW-EditionBehavesLike.Win32.PUPXAR.tc
FireEyeGeneric.mg.b935b93d18821e82
EmsisoftApplication.GameHack (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.GenericKD.cl
AviraTR/Black.Gen2
Antiy-AVLTrojan/Win32.BTSGeneric
GridinsoftTrojan.Win32.Agent.dg
MicrosoftTrojan:Win32/Dynamer!ac
ZoneAlarmHEUR:HackTool.Win32.Gamehack.gen
GDataWin32.Trojan.Agent.M81X6G
CynetMalicious (score: 100)
AhnLab-V3HackTool/Win32.Steam.R165491
MalwarebytesCrackTool.Agent.Steam
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/HackTool.Crack.EN potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R066C0OJO20
RisingTrojan.Generic@ML.97 (RDMK:hyuZOxLdCnvS//7ZxU3nng)
YandexTrojan.GenAsa!PRoFRDHdCcc
IkarusPUA.HackTool
eGambitUnsafe.AI_Score_99%
FortinetPossibleThreat
Paloaltogeneric.ml

How to remove CrackTool.Agent.Steam?

CrackTool.Agent.Steam removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment