Trojan

Trojan.Agent.ELVQ removal instruction

Malware Removal

The Trojan.Agent.ELVQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.ELVQ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Gaelic (Scottish)
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
eas1tlink.xyz

How to determine Trojan.Agent.ELVQ?


File Info:

crc32: 10E81714
md5: 814aa2ba84b2ca00ed7ee4ff0d88a51c
name: him.exe
sha1: fca38090bc9459d5d08d1bc2971ab8fb6f90b161
sha256: 04173cee8796cce2113bdb9dfc09b833eb57dcdf0279ae4eb46e2d0311d766c8
sha512: 285baa245e07020d787908a7153853b1f1528be83b188828efeb68da8c63267d2a85f71067848bc4cb37093483b2d75731afb73387a9fc3dbbd25a726320319a
ssdeep: 3072:6M2sM/4JcZMO1cveSjsAHnDUdFttNX9mTXiUw4Jl9:ltMQJcZMO1cUmnDUdF1aw
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalServiceName: sfsgvsdg.exe
Copyright: Copyright (C) 2020, bobtail
FileVersionFull: 2.3.4

Trojan.Agent.ELVQ also known as:

DrWebTrojan.PWS.Steam.17623
MicroWorld-eScanTrojan.Agent.ELVQ
FireEyeGeneric.mg.814aa2ba84b2ca00
Qihoo-360Generic/HEUR/QVM10.2.3481.Malware.Gen
AegisLabRiskware.Win32.Malicious.1!c
SangforMalware
BitDefenderTrojan.Agent.ELVQ
K7GWHacktool ( 700007861 )
Cybereasonmalicious.a84b2c
Invinceaheuristic
BitDefenderThetaGen:NN.ZexaF.34090.mKW@aG4tjznG
SymantecML.Attribute.HighConfidence
APEXMalicious
ClamAVWin.Malware.Generic-7561022-0
GDataTrojan.Agent.ELVQ
KasperskyTrojan-PSW.Win32.Azorult.alkk
Ad-AwareTrojan.Agent.ELVQ
F-SecureTrojan.TR/AD.MoksSteal.cznjw
McAfee-GW-EditionBehavesLike.Win32.MultiPlug.ch
Trapminemalicious.high.ml.score
EmsisoftTrojan.Agent.ELVQ (B)
IkarusTrojan.Win32.Crypt
AviraTR/AD.MoksSteal.cznjw
Endgamemalicious (high confidence)
ArcabitTrojan.Agent.ELVQ
ZoneAlarmTrojan-PSW.Win32.Azorult.alkk
MicrosoftTrojan:Win32/Wacatac.D!ml
AhnLab-V3Trojan/Win32.MalPe.R325581
Acronissuspicious
McAfeeArtemis!814AA2BA84B2
MAXmalware (ai score=82)
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HBBG
RisingTrojan.GenKryptik!8.AA55 (TFE:5:PAcI55yS4SR)
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_74%
FortinetPossibleThreat.MU
AVGFileRepMetagen [Malware]
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Agent.ELVQ?

Trojan.Agent.ELVQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment