Trojan

Trojan.Agent.EIDH removal

Malware Removal

The Trojan.Agent.EIDH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Trojan.Agent.EIDH virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Anomalous binary characteristics

How to determine Trojan.Agent.EIDH?


File Info:

crc32: FF8EC8C6
md5: 721f6449101d8f434e9e7256f376292c
name: myneworigin.exe
sha1: 7d5c5a293158f8300c86945943b0dd8140d1da15
sha256: 60dd67182eb5d04300202115b10b182e853885e30495fdec90b13f5a275f9c05
sha512: 4c975cd564aab666d085edbef363a85382f71bb695577efc3d6a3aafd958d4c6579638fb79db7229ef79968153e67e8d434f340cbc08cfc06a780d039a2b508b
ssdeep: 12288:ncR9FmrdVYaLZ1QyNVIj3BwuS6F5SgMDSJa9R+7wbzpbT0U:c+dhLZ1QyAtwJ6F5ShDSJGReWzpbTd
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.EIDH also known as:

MicroWorld-eScanTrojan.Agent.EIDH
McAfeeFareit-FQC!721F6449101D
CylanceUnsafe
K7AntiVirusTrojan ( 0055c20f1 )
AlibabaTrojan:Win32/Lokibot.a17ccef6
K7GWTrojan ( 0055c20f1 )
Cybereasonmalicious.93158f
Invinceaheuristic
F-ProtW32/Injector.IPA
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EJCY
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Kryptik.gen
BitDefenderTrojan.Agent.EIDH
RisingTrojan.GenKryptik!8.AA55 (TFE:5:IycVjI7hVeC)
Ad-AwareTrojan.Agent.EIDH
DrWebTrojan.Siggen8.57967
TrendMicroTrojanSpy.Win32.LOKI.SMAD1.hp
McAfee-GW-EditionBehavesLike.Win32.Fareit.dh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.721f6449101d8f43
SophosMal/Generic-S
SentinelOneDFI – Suspicious PE
CyrenW32/Injector.XSRL-0947
MAXmalware (ai score=83)
MicrosoftTrojan:Win32/Lokibot.CS!MTB
Endgamemalicious (high confidence)
ArcabitTrojan.Agent.EIDH
ZoneAlarmHEUR:Trojan.Win32.Kryptik.gen
GDataTrojan.Agent.EIDH
AhnLab-V3Win-Trojan/Delphiless.Exp
Acronissuspicious
BitDefenderThetaGen:NN.ZelphiF.32515.6GW@amSphphi
MalwarebytesTrojan.MalPack.DLF
PandaTrj/RnkBend.A
TrendMicro-HouseCallTrojanSpy.Win32.LOKI.SMAD1.hp
IkarusWin32.Outbreak
FortinetW32/Agent.AJFK!tr
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360HEUR/QVM05.1.7719.Malware.Gen

How to remove Trojan.Agent.EIDH?

Trojan.Agent.EIDH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment