Trojan

About “Trojan.Agent.CJMH” infection

Malware Removal

The Trojan.Agent.CJMH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.CJMH virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • Executed a process and injected code into it, probably while unpacking
  • Exhibits behavior characteristic of Nymaim malware
  • Checks the version of Bios, possibly for anti-virtualization
  • Zeus P2P (Banking Trojan)
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
eaclqogfdgr.com
qojvpegzbjcv.in
bbtvir.in
xdvqz.pw
vbspzko.com
jriifzyatjqi.net
urqrvwjzai.pw
qazumbf.pw
ihbuzuktk.net
rwavzp.pw
gvvohk.in
qfljdtmgjsj.net
gwmaieggazr.com
vycky.com
xahshbn.in

How to determine Trojan.Agent.CJMH?


File Info:

crc32: C7DBCB86
md5: fa7c8501a3ccb846286809a8c6504438
name: FA7C8501A3CCB846286809A8C6504438.mlw
sha1: 6c539d19e96a825a5b5009653437f37f2ee37471
sha256: dce02a1a99237e03ce4c86fa1ae6be314ff9d33e31c34b12cd662a16166993dd
sha512: 2b25102d0fb3a49fc7144b1eb3f7d6a676da0646daa1d29d49cb0e26d0286c4d176633a4a09b714cf255e6da547430dc4d2cc20ef60b2f8502443694d15413eb
ssdeep: 12288:DcpckVxQWM0eJDmRawnxNBj/BAYsff99J78jHPATvAjL3DQMfDtgcT6Ez754I3j:DIckVybLlFd9J78zFH3XTnZ4k
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.CJMH also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.CJMH
FireEyeGeneric.mg.fa7c8501a3ccb846
ALYacTrojan.Agent.CJMH
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.4!c
K7AntiVirusTrojan ( 00512c141 )
BitDefenderTrojan.Agent.CJMH
K7GWTrojan ( 00512c141 )
Cybereasonmalicious.1a3ccb
BitDefenderThetaAI:Packer.9E712CB021
CyrenW32/Nymaim.BK.gen!Eldorado
SymantecPacked.Generic.546
ESET-NOD32Win32/TrojanDownloader.Nymaim.BA
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Nymaim-7057740-0
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojanDownloader:Win32/Nymaim.306602fa
NANO-AntivirusTrojan.Win32.Nymaim.eqwwgk
RisingDownloader.Nymaim!8.781 (TFE:1:w3ORsRALjWU)
Ad-AwareTrojan.Agent.CJMH
EmsisoftTrojan.Agent.CJMH (B)
ComodoTrojWare.Win32.Crypt.CJMH@7a27ar
F-SecureHeuristic.HEUR/AGEN.1117620
DrWebTrojan.Nymaim.143
TrendMicroTROJ_NYMAIM.SMR2
McAfee-GW-EditionBehavesLike.Win32.Backdoor.ch
SophosML/PE-A + Mal/Nymaim-F
IkarusTrojan-Downloader.Win32.Nymaim
JiangminTrojan.Nymaim.dfq
AviraHEUR/AGEN.1117620
MAXmalware (ai score=85)
Antiy-AVLTrojan/Win32.Nymaim
MicrosoftTrojanDownloader:Win32/Silcon!rfn
ArcabitTrojan.Agent.CJMH
AhnLab-V3Trojan/Win32.Nymaim.R208301
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Agent.CJMH
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXBZ-EV!FA7C8501A3CC
TACHYONTrojan/W32.Nymaim.890368
VBA32BScope.Trojan.Nymaim
MalwarebytesTrojan.Nymaim
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_NYMAIM.SMR2
TencentMalware.Win32.Gencirc.10ba6aae
YandexTrojan.Nymaim!bp4/dahdhMQ
SentinelOneStatic AI – Malicious PE – Downloader
eGambitUnsafe.AI_Score_99%
FortinetW32/Nymaim.BA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.ac5

How to remove Trojan.Agent.CJMH?

Trojan.Agent.CJMH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment