Trojan

Trojan.Agent.EWAJ information

Malware Removal

The Trojan.Agent.EWAJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.EWAJ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Trojan.Agent.EWAJ?


File Info:

crc32: EC5EA271
md5: d726cb032c1e31e0487b182aa6bd78ba
name: upload_file
sha1: 249e8934cfc981b26521b103469956951f7b7900
sha256: a306e1d47eee08754d1f93e6acb3420dd3a8ca7ddfb5eb1d785e53644750ba8a
sha512: 17bb064e6de32d97adb563751d95ebd766acda4c8ceaf1380c29acae15617712a4a8f2b8f8c4aacda115b05dcbb14683836d76f040198d449a0fc7a13bc3d44d
ssdeep: 1536:Aw7QywBdCT9sGqLHLqVCMTc4UWJoQBcmiTUT6zkoO:AayB4Ti1LrqVrI4tcmiY6Y
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Free to redistribute!
InternalName: cmdcmxcfg.exe
FileVersion: 1.0.0.1
CompanyName: Shaun Harrington
ProductName: CMDCMX
ProductVersion: 1.0.0.1
FileDescription: CMDCMX Configuration Application
OriginalFilename: cmdcmxcfg.exe
Translation: 0x0409 0x04e4

Trojan.Agent.EWAJ also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.EWAJ
FireEyeTrojan.Agent.EWAJ
McAfeeEmotet-FSC!D726CB032C1E
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0056dc4f1 )
BitDefenderTrojan.Agent.EWAJ
K7GWTrojan ( 0056de091 )
InvinceaMal/Generic-R + Troj/Emotet-CLZ
CyrenW32/Kryptik.BWJ.gen!Eldorado
SymantecPacked.Generic.554
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Emotet-9753021-0
KasperskyTrojan-Banker.Win32.Emotet.gdmo
AlibabaTrojan:Win32/Emotet.5fd17896
NANO-AntivirusTrojan.Win32.Emotet.hucbds
AegisLabTrojan.Win32.Emotet.L!c
TencentMalware.Win32.Gencirc.10cdfdd0
Ad-AwareTrojan.Agent.EWAJ
SophosTroj/Emotet-CLZ
F-SecureTrojan.TR/AD.Emotet.aymji
DrWebTrojan.DownLoader34.32577
ZillyaTrojan.Emotet.Win32.28379
TrendMicroTROJ_GEN.R002C0DI620
McAfee-GW-EditionBehavesLike.Win32.Emotet.lh
EmsisoftTrojan.Emotet (A)
JiangminTrojan.Banker.Emotet.ohy
AviraTR/AD.Emotet.aymji
MAXmalware (ai score=81)
Antiy-AVLTrojan[Banker]/Win32.Emotet
MicrosoftTrojan:Win32/Emotet.ARJ!MTB
ArcabitTrojan.Agent.EWAJ
ZoneAlarmTrojan-Banker.Win32.Emotet.gdmo
GDataTrojan.Agent.EWAJ
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4192543
VBA32Trojan.Downloader
TACHYONBanker/W32.Emotet.73728.E
MalwarebytesTrojan.MalPack.TRE
PandaTrj/Genetic.gen
ESET-NOD32Win32/Emotet.CD
TrendMicro-HouseCallTROJ_GEN.R002C0DI620
RisingTrojan.Kryptik!1.CBC1 (CLASSIC)
YandexTrojan.Kryptik!G5lMk6Xf56s
IkarusTrojan-Banker.Emotet
FortinetW32/Malicious_Behavior.VEX
AVGWin32:CrypterX-gen [Trj]
AvastWin32:CrypterX-gen [Trj]
Qihoo-360Generic/Trojan.54c

How to remove Trojan.Agent.EWAJ?

Trojan.Agent.EWAJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment