Malware

How to remove “Mal/Agent-AUX”?

Malware Removal

The Mal/Agent-AUX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Agent-AUX virus can do?

  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Mal/Agent-AUX?


File Info:

crc32: 067CE7F2
md5: e957e33248d84bc6e9744a6eb1be8d7f
name: lastimg.png
sha1: a19221ad9ac3e8d64c2ae77dd69d79196de418cd
sha256: d3ee0c55c5fe9f0a3ceb154bd41027ee38ca70d21e6bd28acc1388112bb39591
sha512: 928523bf2a9aa5c05c6f48a11a69692c95c01bd084eed39c300707d02c57dd8b1f2622273a7f91da05bc2f6e819abd9572230db9a04ce4e9f21f8b4b426bd402
ssdeep: 12288:gC9lkmethk3XvGHs95omM32Y58N3sqW3PJrslZPjwZaSgGK:gKlkmihAUs95oAY5o3srfJYZPa
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2002
InternalName: that the intelligence community believes Russia
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: rump became irate in a meeting with outgoing acting Director
ProductVersion: 1, 0, 0, 1
FileDescription: The intelligence community's top election security official delivered
OriginalFilename: Last week's briefing, led by election security officia
Translation: 0x0409 0x04b0

Mal/Agent-AUX also known as:

DrWebTrojan.Trick.46524
MicroWorld-eScanTrojan.Agent.EMEO
CAT-QuickHealTrojan.Emotet
McAfeeGenericRXAA-AA!E957E33248D8
CylanceUnsafe
K7AntiVirusTrojan ( 005611101 )
BitDefenderTrojan.Agent.EMEO
K7GWTrojan ( 005611101 )
CrowdStrikewin/malicious_confidence_100% (W)
F-ProtW32/Trickbot.CX.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HBIM
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Banker.Win32.Emotet.ezsq
AlibabaTrojan:Win32/Emotet.5d26a663
NANO-AntivirusTrojan.Win32.Emotet.hbsigr
RisingTrojan.Kryptik!8.8 (TFE:5:uiJdl8dL1RL)
Ad-AwareTrojan.Agent.EMEO
EmsisoftTrojan.Agent.EMEO (B)
F-SecureTrojan.TR/Crypt.Agent.rubjh
TrendMicroTrojanSpy.Win32.EMOTET.SML.hp
McAfee-GW-EditionArtemis
FortinetW32/Kryptik.HBIM!tr
Trapminemalicious.high.ml.score
FireEyeTrojan.Agent.EMEO
SophosMal/Agent-AUX
IkarusTrojan.Win32.Crypt
CyrenW32/Trickbot.CX.gen!Eldorado
JiangminTrojan.Banker.Emotet.njw
WebrootW32.Trojan.Gen
AviraTR/Crypt.Agent.rubjh
MAXmalware (ai score=89)
Antiy-AVLTrojan[Banker]/Win32.Emotet
Endgamemalicious (high confidence)
ArcabitTrojan.Agent.EMEO
ZoneAlarmTrojan-Banker.Win32.Emotet.ezsq
MicrosoftTrojan:Win32/Emotet.BS!MTB
AhnLab-V3Malware/Win32.RL_Trojanspy.R326860
VBA32TrojanBanker.Emotet
ALYacTrojan.Agent.EMEO
TACHYONBanker/W32.Emotet.618496
MalwarebytesTrojan.TrickBot
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojanSpy.Win32.EMOTET.SML.hp
TencentWin32.Trojan-banker.Emotet.Akot
GDataTrojan.Agent.EMEO
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]
Qihoo-360Generic/Trojan.fcb

How to remove Mal/Agent-AUX?

Mal/Agent-AUX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment