Trojan

Should I remove “Trojan.Agent.EMAM”?

Malware Removal

The Trojan.Agent.EMAM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.EMAM virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Agent.EMAM?


File Info:

crc32: FFC15DE4
md5: fa96a45511c6794acb5a9bd89d3ec91c
name: INVOICE-RECEIPT.exe
sha1: cfc69bccb175814cf68a22791919d01ebb50ac09
sha256: c793886ad438b013ca323df8d314bc49210ca025149ef576a388695244369de6
sha512: 43e586822171d75c143e2f3ece23556728323b27b0717f6987a1021ad142f441020e80e8af5e21deb0836c188d2f4829a57bc6f9c377ba39fb402dae6b9bcb6e
ssdeep: 1536:+LSLvvoEKcv5sUigrCKXVjPtTVjgSsBAMFql4wNt0lg5CB+xP+9E:8B8im+yVjPRn7MFql4wNDr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
ProductVersion: 1.00
InternalName: ACCEPTTI
FileVersion: 1.00
OriginalFilename: ACCEPTTI.exe
ProductName: phthisich

Trojan.Agent.EMAM also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanTrojan.Agent.EMAM
FireEyeGeneric.mg.fa96a45511c6794a
McAfeeFareit-FRM!FA96A45511C6
SangforMalware
BitDefenderTrojan.Agent.EMAM
K7GWTrojan ( 00560edc1 )
TrendMicroTROJ_GEN.R002C0DCC20
F-ProtW32/Kryptik.BFF.gen!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Dropper.Fareit-7591670-0
GDataTrojan.Agent.EMAM
KasperskyBackdoor.MSIL.NanoBot.batq
ViRobotTrojan.Win32.Z.Agent.118784.CRS
AegisLabTrojan.MSIL.NanoBot.m!c
RisingBackdoor.NanoBot!8.28C (CLOUD)
Ad-AwareTrojan.Agent.EMAM
EmsisoftTrojan.Agent.EMAM (B)
F-SecureHeuristic.HEUR/AGEN.1046818
McAfee-GW-EditionBehavesLike.Win32.Emotet.cm
Trapminemalicious.moderate.ml.score
SophosMal/FareitVB-W
IkarusTrojan.VB.Crypt
CyrenW32/Kryptik.BFF.gen!Eldorado
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1046818
MAXmalware (ai score=86)
ArcabitTrojan.Agent.EMAM
ZoneAlarmBackdoor.MSIL.NanoBot.batq
MicrosoftTrojan:Win32/Remcos.RRR!MTB
AhnLab-V3Suspicious/Win.VBKrypt.X2058
ALYacTrojan.Agent.EMAM
MalwarebytesTrojan.MalPack.VB
ESET-NOD32a variant of Win32/Injector.EKPS
TrendMicro-HouseCallTROJ_GEN.R002C0DCC20
TencentMsil.Backdoor.Nanobot.Efko
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_88%
FortinetMalicious_Behavior.SB
BitDefenderThetaGen:NN.ZevbaF.34100.hm0@aegGfMpi
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_80% (W)
Qihoo-360HEUR/QVM03.0.DA89.Malware.Gen

How to remove Trojan.Agent.EMAM?

Trojan.Agent.EMAM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment