Trojan

How to remove “Trojan.Agent.EYHC”?

Malware Removal

The Trojan.Agent.EYHC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.EYHC virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Agent.EYHC?


File Info:

crc32: CCD240BA
md5: edb9249d93be3b372c862e4a89825f15
name: N9tymXzGudz.exe
sha1: 58a692db8533086bdbea97ce441b8d9771011654
sha256: c3b9e84cd5d812f1cd90ad6ad6bab2f9d5873f334399166fc6fe07b99a095b23
sha512: 0cfbb5d1457cd37708e5d322add5173a2b14415ac17469fff15bb5c147cd0a9bb4267033069c0bac0eeaaed08625c6d4a5b10b62bd53d0089dc7bf4ea8e7de04
ssdeep: 12288:X1Q632hhVH2OwBVIHFZSL2PLc5/Jm7Clz:X1HmhhZ2O4GHTSL2jcH5l
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.EYHC also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.EYHC
FireEyeGeneric.mg.edb9249d93be3b37
McAfeeRDN/Emotet
AegisLabTrojan.Win32.Generic.4!c
K7AntiVirusTrojan ( 00571ef71 )
BitDefenderTrojan.Agent.EYHC
K7GWTrojan ( 00571ef71 )
Cybereasonmalicious.b85330
CyrenW32/Kryptik.CIF.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Generic-9784952-0
KasperskyHEUR:Trojan-Banker.Win32.Emotet.gen
ViRobotTrojan.Win32.Emotet.397312.D
RisingTrojan.Generic@ML.85 (RDMK:Gn1L2K3AF1RPf346H/ioUg)
Ad-AwareTrojan.Agent.EYHC
EmsisoftTrojan.Agent.EYHC (B)
F-SecureTrojan.TR/AD.Emotet.fqz
DrWebTrojan.Emotet.1047
InvinceaGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Emotet.fc
AviraTR/AD.Emotet.fqz
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/EmotetCrypt.ARK!MTB
GridinsoftTrojan.Win32.Emotet.oa
ArcabitTrojan.Agent.EYHC
ZoneAlarmHEUR:Trojan-Banker.Win32.Emotet.gen
GDataTrojan.Agent.EYHC
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4215257
BitDefenderThetaGen:NN.ZexaF.34590.yqW@aG3f4Aie
ALYacTrojan.Agent.Emotet
MalwarebytesTrojan.Emotet
ESET-NOD32Win32/Emotet.CI
IkarusTrojan-Banker.Emotet
eGambitUnsafe.AI_Score_91%
FortinetW32/Emotet.AMH!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Trojan.Agent.EYHC?

Trojan.Agent.EYHC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment