Trojan

Trojan.Agent.CEGA removal

Malware Removal

The Trojan.Agent.CEGA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.CEGA virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Agent.CEGA?


File Info:

name: 2B7979BCF8433D6E8A8A.mlw
path: /opt/CAPEv2/storage/binaries/60b7229ccc2cbc18823a7a4e24a7f361937ce24aae54f6e32cec614a4ef282af
crc32: B9738B72
md5: 2b7979bcf8433d6e8a8aec1247385a5c
sha1: b5e05d48146a0034d739c020eb497834e99b89a7
sha256: 60b7229ccc2cbc18823a7a4e24a7f361937ce24aae54f6e32cec614a4ef282af
sha512: 29e38ea1ac8ffc45079976ffa5d48afa41b9660181307fa1b0455dd8549761f36b5c491625a5262467bddf863fb2f96344dd6c6a417f9ab51b965a52a4a10f77
ssdeep: 24576:3g/A6o+7RH6fB/86dIuLmLYwYVITb9fj7V25:F6jiWKmLYR6f/6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B055122EF0A86A15F614B0F5015E71C67A78DB3E0702A702ADFD48F601A9A5F4F7DE06
sha3_384: b6d330ce1a2cb579dbd9b3e072c701711630cc39298d4d1040c0bbcd4894f19cbdbb08d9357cddf2d4cfba9eab4c209d
ep_bytes: e613b71e9fd6825abab10864619c1c13
timestamp: 2017-02-27 15:51:17

Version Info:

0: [No Data]

Trojan.Agent.CEGA also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanTrojan.Agent.CEGA
FireEyeGeneric.mg.2b7979bcf8433d6e
McAfeeGenericRXAA-FA!2B7979BCF843
CylanceUnsafe
K7GWHacktool ( 700007861 )
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderTrojan.Agent.CEGA
AvastWin32:Evo-gen [Susp]
Ad-AwareTrojan.Agent.CEGA
EmsisoftTrojan.Agent.CEGA (B)
SophosGeneric ML PUA (PUA)
IkarusPUA.Win32.Prepscram
GDataTrojan.Agent.CEGA
Antiy-AVLTrojan/Generic.ASMalwS.1EAD5A0
ArcabitTrojan.Agent.CEGA
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZexaF.34294.szX@aqnnypk
ALYacTrojan.Agent.CEGA
MAXmalware (ai score=84)
MalwarebytesMachineLearning/Anomalous.100%
SentinelOneStatic AI – Suspicious PE
AVGWin32:Evo-gen [Susp]
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Agent.CEGA?

Trojan.Agent.CEGA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment