Trojan

Trojan.Agent.EKMC (file analysis)

Malware Removal

The Trojan.Agent.EKMC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.EKMC virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Steals private information from local Internet browsers
  • Attempts to modify proxy settings
  • Attempts to access Bitcoin/ALTCoin wallets
  • Harvests credentials from local FTP client softwares

Related domains:

eupanel.club

How to determine Trojan.Agent.EKMC?


File Info:

crc32: AF926EE4
md5: 0fede7d37487b93fc6990b12e9eb7d45
name: goodbuild.exe
sha1: 8704b148e81e2f3b826d3dd89a5a4ac0bca284e6
sha256: f5f97f05bf3ab92df456caf9334eb1a305338731822fe537a987f86c335089f9
sha512: ce322a5413791ce9b1615547ca3ec3834f2a2353e095060fbc12273fe894e8a6f247e5a428f1dddb05e0925e0d5f0f9895287cb0a00114d2a5ab289df838ec71
ssdeep: 6144:BONAsJwl++/d7Lk4nPTrHJ9K4AWQaYRuohRDENm2eK7mnoUSgpAY8ODcDcm7cIs:4NAdl++Vs4PTLJ9KZWvY9f
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.EKMC also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanTrojan.Agent.EKMC
FireEyeGeneric.mg.0fede7d37487b93f
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeeGenericRXGN-FO!0FEDE7D37487
CylanceUnsafe
SangforMalware
K7AntiVirusSpyware ( 0053ee831 )
BitDefenderTrojan.Agent.EKMC
K7GWSpyware ( 0053ee831 )
Cybereasonmalicious.37487b
Invinceaheuristic
F-ProtW32/Ulise.Z.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
ClamAVWin.Malware.Predator-7194940-0
GDataTrojan.Agent.EKMC
KasperskyTrojan-PSW.Win32.Predator.nt
AlibabaTrojanPSW:Win32/Predator.0f157a36
ViRobotTrojan.Win32.Z.Predator.283136.ACI
AegisLabTrojan.Win32.Predator.tpTt
RisingSpyware.Agent!8.C6 (CLOUD)
Endgamemalicious (high confidence)
SophosMal/Generic-S
ComodoBackdoor.Win32.PredatorThief.A@822tr2
F-SecureTrojan.TR/AD.PredatorThief.A
DrWebTrojan.PWS.Stealer.25463
ZillyaBackdoor.Predator.Win32.17
TrendMicroTrojanSpy.Win32.PREDATOR.SMTH
McAfee-GW-EditionBehavesLike.Win32.Downloader.dh
MaxSecureTrojan.Malware.73694961.susgen
EmsisoftTrojan.Agent.EKMC (B)
IkarusTrojan.Win32.Predator
CyrenW32/Ulise.Z.gen!Eldorado
JiangminTrojanDownloader.Agent.fsmk
AviraTR/AD.PredatorThief.A
Antiy-AVLTrojan[Backdoor]/Win32.Predator
MicrosoftTrojan:Win32/Predator.J!MTB
ArcabitTrojan.Agent.EKMC
SUPERAntiSpywareTrojan.Agent/Gen-Spy
ZoneAlarmTrojan-PSW.Win32.Predator.nt
TACHYONBackdoor/W32.Predator.283136
AhnLab-V3Trojan/Win32.Agent.R261059
Acronissuspicious
VBA32TrojanPSW.Stealer
ALYacTrojan.Agent.EKMC
MAXmalware (ai score=81)
Ad-AwareTrojan.Agent.EKMC
MalwarebytesSpyware.PredatorTheThief
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Spy.Agent.PNO
TrendMicro-HouseCallTrojanSpy.Win32.PREDATOR.SMTH
TencentMalware.Win32.Gencirc.10b080ad
YandexBackdoor.Predator!N0qmL+/3j/8
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_92%
FortinetW32/Agent.POT!tr
BitDefenderThetaGen:NN.ZexaF.34100.rqW@aex6U0ki
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.PSW.a88

How to remove Trojan.Agent.EKMC?

Trojan.Agent.EKMC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment