Trojan

About “Trojan.Agent.ECRR” infection

Malware Removal

The Trojan.Agent.ECRR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.ECRR virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Agent.ECRR?


File Info:

name: C0EF5F3D2DC4CAE6E531.mlw
path: /opt/CAPEv2/storage/binaries/94265a288ca1a5dea3f2fdc5f2ed85172ccc231cb1ef8b58002f949b585d9031
crc32: 949A32C4
md5: c0ef5f3d2dc4cae6e53106a8facf3dd8
sha1: 0c2e40ab0d723a083c76e7f271437593fe38af54
sha256: 94265a288ca1a5dea3f2fdc5f2ed85172ccc231cb1ef8b58002f949b585d9031
sha512: acbb16d8403da9ce56224397c31f4885bfffb06ddfd4051fceae86e8759247dc7ff1bc086cd24f40a3f82ecc1c29d1bbca631a43c288aed83a99d1e804b25fa8
ssdeep: 49152:jMjsPY63bEQilO4TUvhullszFFaLnVgn38JQxtZy7r36LeSC:Ajsg63bEQaO4TUvIEFAL4s8A7r3h
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T186C53386699B821FD7235FBB16C0B139D5C719A93BE1BE4C0D07D91A1CE901EB0D8D4B
sha3_384: a6624d2125b22d78bda467f27c227f9955be3475148ace660458d37f26d5a23edc97cb44b24ac23ea30e7501121e7727
ep_bytes: 31c0c300000000000000000000000000
timestamp: 2014-11-04 13:11:42

Version Info:

0: [No Data]

Trojan.Agent.ECRR also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Autoit.4!c
MicroWorld-eScanTrojan.Agent.ECRR
FireEyeGeneric.mg.c0ef5f3d2dc4cae6
ALYacTrojan.Agent.ECRR
K7AntiVirusTrojan ( 004da76e1 )
AlibabaTrojan:Win32/Injector.0dcee85b
K7GWTrojan ( 004da76e1 )
Cybereasonmalicious.d2dc4c
CyrenW32/Autoit.RN
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Injector.Autoit.GM
TrendMicro-HouseCallTROJ_GEN.R002C0GB822
Paloaltogeneric.ml
KasperskyTrojan.Win32.Autoit.foe
BitDefenderTrojan.Agent.ECRR
TencentAutoit.Trojan.Autoit.Syrv
Ad-AwareTrojan.Agent.ECRR
EmsisoftTrojan.Agent.ECRR (B)
ComodoMalware@#3vf850ktbwplm
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0GB822
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.vc
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
AviraTR/AutoIt.biyvf
Antiy-AVLTrojan/Generic.ASMalwS.25C9AC9
GridinsoftRansom.Win32.Zbot.sa
GDataTrojan.Agent.ECRR
CynetMalicious (score: 100)
McAfeeArtemis!C0EF5F3D2DC4
VBA32Trojan.Click
APEXMalicious
MaxSecureTrojan.Malware.74283023.susgen
FortinetW32/PossibleThreat
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Agent.ECRR?

Trojan.Agent.ECRR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment