Trojan

Should I remove “Trojan.Agent.ETDD (B)”?

Malware Removal

The Trojan.Agent.ETDD (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.ETDD (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Anomalous binary characteristics

How to determine Trojan.Agent.ETDD (B)?


File Info:

crc32: 92790459
md5: ba8aa4c19ba5d4263e3d05fecd39a619
name: cursor.png
sha1: d5fd231904029797c5a4678f834b6da0a5efe33b
sha256: defc5fcba1ca0dfba6e4aceb541a45c46be0396d4fe8caa6cdbe7311fab45ad6
sha512: ddabd2a288502716302c01c529b5d7572e9f55c3b14569428ddd188f75fe21409fb395597ecf9b61f557c5d3e44acb841f1d7af5c13148fb4a393a665447d53a
ssdeep: 3072:uGkSYnxWFdFE/fS8sY6PguLVJfI8h6tXKBE/fzgmP3uZ3qGNRpAS9iHJz7v9UNeQ:U3xWFdFY6IiVRBhoRzg0Z6AZbts1b
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: StringExtractor
FileVersion: 1.0.0.0
CompanyName: Gdr Ltd.
Comments: Votes and Comments are highly appreciated
ProductName: StringExtractor
ProductVersion: 1.0.0.0
FileDescription: StringExtractor - Extracts Strings from binary Files
OriginalFilename: StringExtractor.exe

Trojan.Agent.ETDD (B) also known as:

BkavW32.AIDetectVM.malware1
DrWebTrojan.DownLoader33.58091
MicroWorld-eScanTrojan.Agent.ETDD
FireEyeGeneric.mg.ba8aa4c19ba5d426
McAfeeGenericRXAA-AA!BA8AA4C19BA5
CylanceUnsafe
SangforMalware
BitDefenderTrojan.Agent.ETDD
Cybereasonmalicious.904029
BitDefenderThetaGen:NN.ZevbaF.34130.Em1@a4JWk9gO
APEXMalicious
AvastWin32:Trojan-gen
GDataTrojan.Agent.ETDD
KasperskyTrojan.Win32.Vebzenpak.xfv
Ad-AwareTrojan.Agent.ETDD
Invinceaheuristic
EmsisoftTrojan.Agent.ETDD (B)
SentinelOneDFI – Suspicious PE
MAXmalware (ai score=80)
Antiy-AVLTrojan/Win32.Vebzenpak
Endgamemalicious (high confidence)
ZoneAlarmTrojan.Win32.Vebzenpak.xfv
CynetMalicious (score: 100)
TACHYONTrojan/W32.VB-Vebzenpak.491577
MalwarebytesTrojan.Injector
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/GenKryptik.ENER
RisingTrojan.Injector!1.C714 (C64:YzY0OoriE/cUdnuI)
eGambitUnsafe.AI_Score_99%
FortinetW32/GenKryptik.ENER!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Agent.ETDD (B)?

Trojan.Agent.ETDD (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment