Crack

Should I remove “HackTool:MSIL/SmbAgent!atmn”?

Malware Removal

The HackTool:MSIL/SmbAgent!atmn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:MSIL/SmbAgent!atmn virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine HackTool:MSIL/SmbAgent!atmn?


File Info:

name: 89DF34873689EE0D77C8.mlw
path: /opt/CAPEv2/storage/binaries/c047fcdc3895e4219d1c98c90ec2c909591c38193b24147d6b98d214ff2fe6ca
crc32: AC20C15E
md5: 89df34873689ee0d77c84a67d979a691
sha1: 8b00d3f082455bcb364f5607a2d7998e193bb0ac
sha256: c047fcdc3895e4219d1c98c90ec2c909591c38193b24147d6b98d214ff2fe6ca
sha512: 1f97e24f436479a52d2bb8cc4ca54db08afca933d9a51548dc3dfb4b688ddc6aa77a9809187c94d4435d1a84966c76e4689b5b29980306121a11e83071f9b20e
ssdeep: 96:Yfs/8jLUbx/mUnpNP4k6dliwhbaZkBOJob3wNBgvK:zd/hn34kSphbooKBJ
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1A6C1C786BBD40E47E47B0BBD1AB3932A96B0F8829ED38B9F485011347C517D05E757B0
sha3_384: 43d176fdf6cb50989f73c69771fdaab6284def326d93c8dc771f25031faa1aef975b048e0429b6fb66bab8e3bbb89057
ep_bytes: ff250020001000000000000000000000
timestamp: 2021-07-12 12:14:14

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: eieq3zwi.dll
LegalCopyright:
OriginalFilename: eieq3zwi.dll
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

HackTool:MSIL/SmbAgent!atmn also known as:

BkavW32.AIDetectMalware.CS
LionicHacktool.MSIL.SMBScan.3!c
AVGWin32:HacktoolX-gen [Trj]
DrWebTrojan.Siggen7.34575
MicroWorld-eScanGeneric.Malware.WX.EF4CBB2E
FireEyeGeneric.mg.89df34873689ee0d
SkyhighBehavesLike.Win32.Agent.xt
ALYacGeneric.Malware.WX.EF4CBB2E
Cylanceunsafe
ZillyaTool.SMBScan.Win32.1464
SangforSuspicious.Win32.Save.a
CrowdStrikewin/grayware_confidence_100% (D)
K7GWTrojan ( 005962b21 )
K7AntiVirusTrojan ( 005962b21 )
VirITHackTool.Win32.MSIL.NF
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/HackTool.Agent.BZ potentially unsafe
APEXMalicious
ClamAVWin.Malware.Smbagent-9769162-0
KasperskyHEUR:HackTool.MSIL.Convagent.gen
BitDefenderGeneric.Malware.WX.EF4CBB2E
AvastWin32:HacktoolX-gen [Trj]
TencentHackTool.MSIL.Convagent.ha
EmsisoftGeneric.Malware.WX.EF4CBB2E (B)
F-SecureHeuristic.HEUR/AGEN.1300371
VIPREGeneric.Malware.WX.EF4CBB2E
TrendMicroHackTool.MSIL.SMBScan.SMW
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
VaristW32/Hacktool.J.gen!Eldorado
AviraHEUR/AGEN.1300371
MAXmalware (ai score=82)
Antiy-AVLHackTool/Win32.Agent.a
MicrosoftHackTool:MSIL/SmbAgent!atmn
ArcabitGeneric.Malware.WX.EF4CBB2E
ZoneAlarmHEUR:HackTool.MSIL.Convagent.gen
GDataMSIL.Riskware.SMBScanner.A
GoogleDetected
AhnLab-V3Malware/Win.Generic.R424570
McAfeeAgent-SMB.b!89DF34873689
PandaTrj/GdSda.A
TrendMicro-HouseCallHackTool.MSIL.SMBScan.SMW
IkarusPUA.Hacktool.SMBAgent
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/HackTool
DeepInstinctMALICIOUS
alibabacloudHackTool:MSIL/Smbagent

How to remove HackTool:MSIL/SmbAgent!atmn?

HackTool:MSIL/SmbAgent!atmn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment