Crack

HackTool:MSIL/SmbAgent!atmn removal guide

Malware Removal

The HackTool:MSIL/SmbAgent!atmn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:MSIL/SmbAgent!atmn virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine HackTool:MSIL/SmbAgent!atmn?


File Info:

name: 7B44B7E29762C1378B2E.mlw
path: /opt/CAPEv2/storage/binaries/4a47a6d10c47d5230617f58b0e080fe5648886909b7e107da794d546f6f4bd4c
crc32: 67D200D9
md5: 7b44b7e29762c1378b2edf6506a27ea8
sha1: 52217521d89e106ef2b84bad7ba750485110c304
sha256: 4a47a6d10c47d5230617f58b0e080fe5648886909b7e107da794d546f6f4bd4c
sha512: 141828f3fe9a03d9928a38b51f65e10ca79436df122972fd2530a1e48dbe301d3f0823557d829acd5b2617cb0bcdf2280a9e63581c466c411d8cc4cda4b93e2d
ssdeep: 96:cH+lj9YDhx/cHyTqc8AU7y0Lz88WvenOBOpobcw9Y8MK:cHQYb/Zu1ym88Wvgvk7
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1F6C1E88A7BD40E53F83A03795973932A5778FD529E53579F0D601634AD12B902E31BF0
sha3_384: 21c142dd5c4121dd10f1fde645df16b19ebb495b863a0124ccc87994edda3fbb32edd02d9ea0274790c9f05571b08c17
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-07-14 05:59:54

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: 1h6rpmnx.dll
LegalCopyright:
OriginalFilename: 1h6rpmnx.dll
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

HackTool:MSIL/SmbAgent!atmn also known as:

BkavW32.AIDetectMalware.CS
LionicHacktool.MSIL.SMBScan.3!c
DrWebTrojan.Siggen7.34567
MicroWorld-eScanGeneric.Malware.WX.585BDD59
ClamAVWin.Malware.Smbagent-9769162-0
FireEyeGeneric.mg.7b44b7e29762c137
SkyhighBehavesLike.Win32.Agent.xt
McAfeeAgent-SMB.b!7B44B7E29762
Cylanceunsafe
ZillyaTool.SMBScan.Win32.4320
SangforSuspicious.Win32.Save.a
CrowdStrikewin/grayware_confidence_100% (W)
K7GWTrojan ( 005962b21 )
K7AntiVirusTrojan ( 005962b21 )
ArcabitGeneric.Malware.WX.585BDD59
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/HackTool.Agent.BW potentially unsafe
APEXMalicious
KasperskyHEUR:HackTool.MSIL.SMBScan.gen
BitDefenderGeneric.Malware.WX.585BDD59
NANO-AntivirusTrojan.Win32.Ric.ezglxv
AvastWin32:HacktoolX-gen [Trj]
TencentHackTool.MSIL.SmbScan.ha
TACHYONTrojan/W32.DN-SMBScan.6144
EmsisoftGeneric.Malware.WX.585BDD59 (B)
VIPREGeneric.Malware.WX.585BDD59
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GoogleDetected
Antiy-AVLHackTool/Win32.Agent.a
Kingsoftmalware.kb.c.806
XcitiumTrojWare.MSIL.HackTool.Agent.ASD@8sg90t
MicrosoftHackTool:MSIL/SmbAgent!atmn
ZoneAlarmHEUR:HackTool.MSIL.SMBScan.gen
GDataMSIL.Riskware.SMBScanner.A
VaristW32/Hacktool.J.gen!Eldorado
AhnLab-V3Malware/Win.Generic.R424570
ALYacGeneric.Malware.WX.585BDD59
MAXmalware (ai score=86)
MalwarebytesTrojan.Crypt
PandaTrj/GdSda.A
IkarusPUA.Hacktool.SMBAgent
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/HackTool
AVGWin32:HacktoolX-gen [Trj]
DeepInstinctMALICIOUS

How to remove HackTool:MSIL/SmbAgent!atmn?

HackTool:MSIL/SmbAgent!atmn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment