Crack

How to remove “HackTool:MSIL/SmbAgent!atmn”?

Malware Removal

The HackTool:MSIL/SmbAgent!atmn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:MSIL/SmbAgent!atmn virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine HackTool:MSIL/SmbAgent!atmn?


File Info:

name: 47916DFD2F36DDC9CC26.mlw
path: /opt/CAPEv2/storage/binaries/14cbad8af2629f6a644feb0370783e6355e733a3b72c4781fe822a8e216f9750
crc32: BB21665D
md5: 47916dfd2f36ddc9cc26fa1e8541c98d
sha1: 5e02dd2fbc7f027d6ae2a4f9bb712bf1adf8e46a
sha256: 14cbad8af2629f6a644feb0370783e6355e733a3b72c4781fe822a8e216f9750
sha512: 099f6f8360061feaaa6b6845089e43104ea15f5832ff47a269336ed0a45f549635d3e5ca5efea8ed63cf9d4c73d294b2a12d88516c1abd5dd829c478305b05b2
ssdeep: 96:cH+lj9YDhx/cHyTqc8AUbCC+Arz88SLTOBOJobgw9YElK:cHQYb/ZuF2A88StXkK
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T19ED1C789BBD40E53E83B0B785D73A32A5774F9429E535BAF086012343E51B902F61BF1
sha3_384: f0068ed329638bf3154376f5a00e8d0a9c4ff2ac5b1e2a9caecfcbc2f4c91f6eabb9507ec3f6412a2b5a88891c608a07
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-01-29 22:49:34

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: 2ufkfonp.dll
LegalCopyright:
OriginalFilename: 2ufkfonp.dll
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

HackTool:MSIL/SmbAgent!atmn also known as:

BkavW32.AIDetectMalware.CS
LionicHacktool.MSIL.SMBScan.3!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen7.34567
MicroWorld-eScanGeneric.Malware.WX.E7529F76
CAT-QuickHealTrojan.GenericFC.S2479216
SkyhighBehavesLike.Win32.Agent.xt
McAfeeAgent-SMB.b!47916DFD2F36
Cylanceunsafe
ZillyaTool.Agent.Win32.55562
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
K7GWTrojan ( 005962b21 )
K7AntiVirusTrojan ( 005962b21 )
ArcabitGeneric.Malware.WX.E7529F76
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/HackTool.Agent.BW potentially unsafe
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Smbagent-9769162-0
KasperskyHEUR:HackTool.MSIL.SMBScan.gen
BitDefenderGeneric.Malware.WX.E7529F76
NANO-AntivirusTrojan.Win32.Ric.ezglxv
AvastWin32:HacktoolX-gen [Trj]
TencentHackTool.MSIL.SmbScan.ha
EmsisoftGeneric.Malware.WX.E7529F76 (B)
VIPREGeneric.Malware.WX.E7529F76
SophosGeneric ML PUA (PUA)
IkarusHackTool.MSIL.SMBScan
VaristW32/Hacktool.J.gen!Eldorado
Antiy-AVLHackTool/Win32.Agent.a
Kingsoftmalware.kb.c.999
XcitiumTrojWare.MSIL.HackTool.Agent.ASD@8sg90t
MicrosoftHackTool:MSIL/SmbAgent!atmn
ZoneAlarmHEUR:HackTool.MSIL.SMBScan.gen
GDataMSIL.Riskware.SMBScanner.A
GoogleDetected
AhnLab-V3Unwanted/Win32.HackTool.R261573
MalwarebytesTrojan.Crypt
PandaTrj/GdSda.A
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/HackTool
AVGWin32:HacktoolX-gen [Trj]
DeepInstinctMALICIOUS

How to remove HackTool:MSIL/SmbAgent!atmn?

HackTool:MSIL/SmbAgent!atmn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment