Malware

Troj/Agent-BEVX information

Malware Removal

The Troj/Agent-BEVX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Agent-BEVX virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Troj/Agent-BEVX?


File Info:

crc32: 97E868D9
md5: 7e291952d847594a386f49f9a4eec771
name: tmpv8kaehxf
sha1: 3eba730d8684430810c3445c9221c9ced22104eb
sha256: 9a0ace7c4c5f1530238b905e95e099ccf9b4ebc9bc935cd33459b691c433062a
sha512: d44cc2d9190dec4748228c8a1850203652f1a99d358a304f761bb8a280735aa3f97c662c7da358fc6acbb9e89aa0ad1b963b4ae2d4c54106613223c09e0759b9
ssdeep: 6144:Odv/xmayLiHfqCUAbjBUByER10R2TJlpwnEKibJDGkbGxGiphngkeWeGYxSN3NE:OdxmtLcHXbjBwyKFTZjb1DmGygBAg
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 2018 Describe MelodyProcess Corporation. All rights reserved.
InternalName: door.dll
CompanyName: Describe MelodyProcess
ProductName: Describe MelodyProcess ManyCity
ProductVersion: 0.3.7.294
FileDescription: ManyCity
OriginalFilename: door.dll
Translation: 0x0409 0x04b0

Troj/Agent-BEVX also known as:

MicroWorld-eScanTrojan.Agent.ERTO
FireEyeGeneric.mg.7e291952d847594a
McAfeeGenericRXKX-SM!7E291952D847
CylanceUnsafe
ZillyaTrojan.Cridex.Win32.763
SangforMalware
K7AntiVirusTrojan ( 005684061 )
BitDefenderTrojan.Agent.ERTO
K7GWTrojan ( 005684061 )
ESET-NOD32a variant of Win32/Kryptik.HDVF
AvastWin32:Trojan-gen
GDataTrojan.Agent.ERTO
KasperskyTrojan-Banker.Win32.Cridex.nsw
RisingTrojan.Kryptik!1.C754 (RDMK:cmRtazq9E4+YxCQQ4Bi5TsfnC9gA)
SophosTroj/Agent-BEVX
ComodoTrojWare.Win32.Cridex.CRS@8so55d
F-SecureTrojan.TR/AD.ZLoader.cng
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXKX-SM!7E291952D847
EmsisoftTrojan.Agent.ERTO (B)
JiangminTrojan.Banker.Cridex.za
MaxSecureTrojan.Malware.101927264.susgen
AviraTR/AD.ZLoader.cng
MAXmalware (ai score=84)
Antiy-AVLTrojan[Banker]/Win32.Cridex
MicrosoftTrojan:Win32/Cridex.DEB!MTB
ArcabitTrojan.Agent.ERTO
AhnLab-V3Trojan/Win32.Cridex.R339424
ZoneAlarmTrojan-Banker.Win32.Cridex.nsw
CynetMalicious (score: 85)
VBA32TrojanBanker.Cridex
ALYacTrojan.Agent.ERTO
TACHYONBanker/W32.Cridex.523264
Ad-AwareTrojan.Agent.ERTO
MalwarebytesTrojan.MalPack
PandaTrj/Genetic.gen
TencentMalware.Win32.Gencirc.10cdd1fa
YandexTrojan.Agent!YTvQPiMEuG0
SentinelOneDFI – Suspicious PE
FortinetW32/Kryptik.ELUE!tr
AVGWin32:Trojan-gen

How to remove Troj/Agent-BEVX?

Troj/Agent-BEVX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment