Trojan

Trojan.Agent.EYFR (B) removal guide

Malware Removal

The Trojan.Agent.EYFR (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.EYFR (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Trojan.Agent.EYFR (B)?


File Info:

crc32: C5A5A6AF
md5: 2bfabd6a13ca75eaec7154821d0efe3d
name: EkTX3kiHzWu7v.exe
sha1: f93f8f54968e794c64a4fa9411430807735d1f53
sha256: c29ce58dbd6ff1886fc920564900c43fe6c68b1e864c8166979868c7c6ba962e
sha512: 80b89060402ace6f3d8fdea9a4372311fb0bddf75acde7d05b603b647f7b89f218481fb9d7bcd1a50a18584e858365e2d621edd06076830e565626090766476c
ssdeep: 12288:zXsObAC+H3bd40FM1Opzit4t/tltJt004m6E0p:zzMC+HTFM1OpzQnF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 1998
InternalName: CCircFileDemo
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: CCircFileDemo Application
ProductVersion: 1, 0, 0, 1
FileDescription: CCircFileDemo MFC Application
OriginalFilename: CCircFileDemo.EXE
Translation: 0x0409 0x04b0

Trojan.Agent.EYFR (B) also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.EYFR
McAfeeEmotet-FSF!2BFABD6A13CA
AegisLabTrojan.Win32.Emotet.L!c
BitDefenderTrojan.Agent.EYFR
InvinceaMal/Generic-S
CyrenW32/Kryptik.APD.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
Ad-AwareTrojan.Agent.EYFR
DrWebTrojan.Emotet.1046
TrendMicroTrojanSpy.Win32.EMOTET.SMU.hp
McAfee-GW-EditionBehavesLike.Win32.Emotet.gh
FireEyeGeneric.mg.2bfabd6a13ca75ea
EmsisoftTrojan.Agent.EYFR (B)
MicrosoftTrojan:Win32/EmotetCrypt.ARJ!MTB
ArcabitTrojan.Agent.EYFR
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataTrojan.Agent.EYFR
AhnLab-V3Trojan/Win32.Emotet.R354300
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34590.Au0@aKkhoGki
ALYacTrojan.Agent.Emotet
TACHYONTrojan/W32.Agent.428032.UB
MalwarebytesTrojan.Emotet
ESET-NOD32a variant of Win32/Kryptik.HHBE
TrendMicro-HouseCallTrojanSpy.Win32.EMOTET.SMU.hp
MAXmalware (ai score=80)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/BankerX.5CC7!tr
WebrootW32.Trojan.Emotet
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/Trojan.adb

How to remove Trojan.Agent.EYFR (B)?

Trojan.Agent.EYFR (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment