Trojan

Trojan.Agent.FIMN (file analysis)

Malware Removal

The Trojan.Agent.FIMN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.FIMN virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Trojan.Agent.FIMN?


File Info:

crc32: BE444DFD
md5: 240851be8c73117d150f88a6290a54dc
name: 240851BE8C73117D150F88A6290A54DC.mlw
sha1: 09073e368abc263cc82e675e86e6fc88ffd40c37
sha256: 899cd5353d64f74fe42928858ff88ed62c0a3b3e54110e62ec579bbce2ee9c3c
sha512: 0e730f9c0d8dc5555efeda0d6ed1f570cd2e826af1b538dfe7eb9aa2ef10975fd57c765c09a61da26dcaa8b890dea5a176af593cd11c0c4a0b3222e78d965131
ssdeep: 12288:WvanFwICa+kqQQuOXoVo4DojSHSz2nAu41SeT0Vrh3JMj8CQyvYOLQMOGBeuI:AaFwICpFQQNUezTrMeYh5+YOLQLse
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Sail guide Corporation. All rights reserved Frontcharacter
InternalName: Knew cat
FileVersion: 2.1.0.833
CompanyName: Sail guide Corporation
ProductName: Sail guidexae Wildxae
ProductVersion: 2.1.0.833
FileDescription: Sail guide Wild
OriginalFilename: Molecule.dll
Translation: 0x0409 0x04b0

Trojan.Agent.FIMN also known as:

Elasticmalicious (high confidence)
McAfeeGenericRXOT-EQ!240851BE8C73
AlibabaTrojan:Win32/Kryptik.761a3bcf
CyrenW32/Banker.GZ.gen!Eldorado
ESET-NOD32a variant of Win32/Kryptik.HLEE
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
BitDefenderTrojan.Agent.FIMN
MicroWorld-eScanTrojan.Agent.FIMN
Ad-AwareTrojan.Agent.FIMN
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.240851be8c73117d
EmsisoftTrojan.Agent.FIMN (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/AD.Qbot.ooigy
eGambitUnsafe.AI_Score_99%
GDataWin32.Trojan.PSE.1SWQ7P5
VBA32BScope.Malware-Cryptor.MTA
MAXmalware (ai score=86)
RisingTrojan.Generic@ML.87 (RDML:is1DIWhdXx2dQJpnN2OeFg)
IkarusTrojan.Win32.Crypt
FortinetMalicious_Behavior.SB
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Agent.FIMN?

Trojan.Agent.FIMN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment