Trojan

How to remove “Trojan.Agent.EXKN”?

Malware Removal

The Trojan.Agent.EXKN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.EXKN virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Hungarian
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

How to determine Trojan.Agent.EXKN?


File Info:

crc32: AB0A7849
md5: e8cfb527ef16b1713b8eb6273b2621ed
name: 625986.png
sha1: e7e20bf03383cfcdd8fb3dbd1da8f1dde340aac5
sha256: 8aa41c76107179a834cc66ecc053412f76be162305cbad8af1af828e0768a22c
sha512: 1be54328dd181504d0cd04b7d958b1e9cbe98acee29f72230727c1e159cdba0433605b4fd1b63468824e976271d7fa8ea132fd2f7bc548416efd1f82d006cdad
ssdeep: 6144:aIKG394uuVXtm+wzphhWjHq+KNO8/uw01QqSrOmH7OLrBiMZLjUarECHiV7HTMkX:x36qtzDcKNT0EOmbGrcsUaFe74hC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.EXKN also known as:

Elasticmalicious (high confidence)
DrWebTrojan.QakBot.11
MicroWorld-eScanTrojan.Agent.EXKK
FireEyeGeneric.mg.e8cfb527ef16b171
CylanceUnsafe
SangforMalware
BitDefenderTrojan.Agent.EXKN
Cybereasonmalicious.03383c
SymantecML.Attribute.HighConfidence
APEXMalicious
Ad-AwareTrojan.Agent.EXKK
SophosMal/EncPk-APW
F-SecureHeuristic.HEUR/AGEN.1101552
InvinceaMal/EncPk-APW
EmsisoftMalCert.A (A)
SentinelOneDFI – Malicious PE
AviraHEUR/AGEN.1101552
MicrosoftTrojan:Win32/Wacatac.C!ml
ArcabitTrojan.Agent.EXKK
GDataWin32.Trojan.PSE.1C7V9N3
CynetMalicious (score: 100)
MAXmalware (ai score=85)
VBA32BScope.TrojanPSW.Coins
ESET-NOD32a variant of Win32/GenKryptik.ETRG
RisingTrojan.Generic@ML.80 (RDML:ks1zVSLTvYZ02DuqH5Maww)
eGambitUnsafe.AI_Score_74%
MaxSecureVirus.Patched.OF
Qihoo-360HEUR/QVM20.1.6C17.Malware.Gen

How to remove Trojan.Agent.EXKN?

Trojan.Agent.EXKN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment