Crack

HackTool:MSIL/SmbAgent!atmn removal guide

Malware Removal

The HackTool:MSIL/SmbAgent!atmn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:MSIL/SmbAgent!atmn virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine HackTool:MSIL/SmbAgent!atmn?


File Info:

name: BE0CADBFF943BB0B4875.mlw
path: /opt/CAPEv2/storage/binaries/cf40b4d46d65808adce2d3f29b31b08b9657c58fcffd7a5f414c9ee81b113c7b
crc32: B8EA0572
md5: be0cadbff943bb0b487540945db89549
sha1: 7ee4dd2b5bd939f95634024fc9ff09ff52dad056
sha256: cf40b4d46d65808adce2d3f29b31b08b9657c58fcffd7a5f414c9ee81b113c7b
sha512: 48293316dfa882b95938762e1fce2ccea709c40b4070f535fa2ca416fedfbb2a0777f363fc56d8d91cf8bd6c6d2ccf15b055f890342b1e9be0d7cdec205d2c91
ssdeep: 96:xKH+lj9YDhx/cHyTqc8AU7y0Lz88m/gGHOBOpobmQw9YFqwK:xKHQYb/Zu1ym88IT9vQkw4
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T14DC1D58A7BE80E53F83A07785A73932A57B8FD529E43979F0C2016346C51B901E71BF0
sha3_384: f4d07f5ae5fed71ffbd7586d000aa273e44e9cb5faae48146612b87a1e555a2196a489b9caccc84a6195b7e80658619d
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-01-15 16:10:36

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: ewrjgmjp.dll
LegalCopyright:
OriginalFilename: ewrjgmjp.dll
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

HackTool:MSIL/SmbAgent!atmn also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGeneric.Malware.WX.2F84326C
ClamAVWin.Malware.Smbagent-9769162-0
SkyhighBehavesLike.Win32.Agent.xt
McAfeeAgent-SMB.b!BE0CADBFF943
Cylanceunsafe
ZillyaTool.Agent.Win32.54677
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
K7GWTrojan ( 005962b21 )
K7AntiVirusTrojan ( 005962b21 )
ArcabitGeneric.Malware.WX.2F84326C
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/HackTool.Agent.BW potentially unsafe
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:HackTool.MSIL.SMBScan.gen
BitDefenderGeneric.Malware.WX.2F84326C
NANO-AntivirusTrojan.Win32.Ric.ezglxv
AvastWin32:HacktoolX-gen [Trj]
TencentHackTool.MSIL.SmbScan.ha
SophosGeneric ML PUA (PUA)
DrWebTrojan.Siggen7.34567
VIPREGeneric.Malware.WX.2F84326C
EmsisoftGeneric.Malware.WX.2F84326C (B)
IkarusPUA.Hacktool.SMBAgent
GoogleDetected
Antiy-AVLTrojan/Win32.Generic
Kingsoftmalware.kb.c.977
XcitiumTrojWare.MSIL.HackTool.Agent.ASD@8sg90t
MicrosoftHackTool:MSIL/SmbAgent!atmn
ZoneAlarmHEUR:HackTool.MSIL.SMBScan.gen
GDataMSIL.Riskware.SMBScanner.A
VaristW32/Hacktool.J.gen!Eldorado
AhnLab-V3Malware/Win.Generic.R424570
TACHYONTrojan/W32.DN-SMBScan.6144
MalwarebytesTrojan.Crypt
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/HackTool
AVGWin32:HacktoolX-gen [Trj]
DeepInstinctMALICIOUS

How to remove HackTool:MSIL/SmbAgent!atmn?

HackTool:MSIL/SmbAgent!atmn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment