Trojan

Trojan.Agent.CMWX removal tips

Malware Removal

The Trojan.Agent.CMWX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.CMWX virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Agent.CMWX?


File Info:

crc32: 0AE000BA
md5: 6867921f846dd5da2ed7e6e7fe3dee8a
name: 6867921F846DD5DA2ED7E6E7FE3DEE8A.mlw
sha1: 615bb00b4d8132141f62d226dcbad4274dabb1c4
sha256: dd8dad8320d81a276ba4a816a1aa4bd89fa7fd7c5c4348ee72c407fdfce3ca23
sha512: 5564163c4c2d1824ded7f2959ec16784b0b19a9016b5c6e852d750aac434b7e682232d0bf4e9786a72ce42daac12b0e9b645fc17f3695d9af7ed343a7c62b258
ssdeep: 12288:ApQTBPBGns74tmJCATeVI0C0BBSdkVfs81u8bitf:ApQTB0s0mJ3OLdlVfErf
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.CMWX also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.CMWX
FireEyeGeneric.mg.6867921f846dd5da
McAfeeRansomware-GFM!6867921F846D
MalwarebytesRansom.Cerber
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Cryptoff.j!c
SangforMalware
K7AntiVirusTrojan ( 0051b2ad1 )
BitDefenderTrojan.Agent.CMWX
K7GWTrojan ( 00516f3d1 )
Cybereasonmalicious.f846dd
BitDefenderThetaGen:NN.ZexaF.34804.EmW@a00VCH
CyrenW32/S-2ae977e6!Eldorado
SymantecPacked.Generic.493
BaiduWin32.Trojan.Kryptik.rb
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Tofsee-6345150-0
KasperskyTrojan.Win32.Nymaim.bexd
NANO-AntivirusTrojan.Win32.Cryptoff.estgrv
RisingTrojan.Generic@ML.100 (RDML:sO6Xsf/8P3VOnG+fOxHFsw)
Ad-AwareTrojan.Agent.CMWX
SophosMal/Generic-S + Mal/Elenoocka-E
ComodoBackdoor.Win32.Tofsee.FV@7l1ow1
F-SecureHeuristic.HEUR/AGEN.1120892
DrWebTrojan.Siggen7.29857
ZillyaTrojan.Cryptoff.Win32.450
TrendMicroRansom_CERBER.SMALY0
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
EmsisoftTrojan.Agent.CMWX (B)
SentinelOneStatic AI – Malicious PE – Downloader
JiangminTrojan.Cryptoff.cs
AviraHEUR/AGEN.1120892
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojanDownloader:Win32/Nymaim.K
ArcabitTrojan.Agent.CMWX
ZoneAlarmTrojan.Win32.Nymaim.bexd
GDataTrojan.Agent.CMWX
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Cryptoff.C2152898
Acronissuspicious
VBA32Trojan-Ransom.Cryptoff
ALYacTrojan.Agent.CMWX
TACHYONRansom/W32.Cryptoff.501248
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Injector.DRRG
TrendMicro-HouseCallRansom_CERBER.SMALY0
TencentMalware.Win32.Gencirc.10b3d69a
YandexTrojan.GenAsa!Kf5jc859ipw
IkarusTrojan-Downloader.Nymaim
FortinetW32/Kryptik.FXFR!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.Cryptoff.AB

How to remove Trojan.Agent.CMWX?

Trojan.Agent.CMWX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment