Trojan

Trojan.Agent.GBXM (file analysis)

Malware Removal

The Trojan.Agent.GBXM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.GBXM virus can do?

  • Uses Windows utilities for basic functionality
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Trojan.Agent.GBXM?


File Info:

name: DE043CF10B4B8E7DA1F4.mlw
path: /opt/CAPEv2/storage/binaries/d4c8b9848826f6ddb2d3ae7b6005aa577e4092f139d2671445419876e37ea205
crc32: 38704327
md5: de043cf10b4b8e7da1f402934af6c5c2
sha1: 4f5a43ec2db9853e9023e4dcba0ff055b787778c
sha256: d4c8b9848826f6ddb2d3ae7b6005aa577e4092f139d2671445419876e37ea205
sha512: e92dc1b10c2ea7a85007bc2d7f752970916b4201d6ec5a9cb94a7ec7a791e961c9afd9333fbbf25bd8b57b1d96d5ad50fc421aa5d08ccaea0f65faa5ff1e8528
ssdeep: 384:3AQfQ7Lax+y4cM0pxth9uSTj0HD/89n3w253Hp0kes04r5evg:wQDx+MxlnA25Xp0kewr5Wg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EEE28D6EAEA70563F2029974D7F64ECA5FFC6D133AD7683FCF84014124A01C88596EB6
sha3_384: a31e5b707a68cd58f5272fa37337f11ab89be32a403d8778bad2d6686c87bc3c709bfccf07d56647fd8e38653e62a4a0
ep_bytes: 558bec81ec340200005356576a4033db
timestamp: 2010-09-07 02:27:10

Version Info:

CompanyName: Adobe Systems, Inc.
FileDescription: Adobe? Flash? Player Installer/Uninstaller 10.1 r53
FileVersion: 10,1,53,64
InternalName: Adobe? Flash? Player Installer/Uninstaller 10.1
LegalCopyright: Copyright ? 1996-2010 Adobe, Inc.
LegalTrademarks: Adobe? Flash? Player
OriginalFilename: FlashUtil.exe
ProductName: Flash? Player Installer/Uninstaller
ProductVersion: 10,1,53,64
Translation: 0x0409 0x04b0

Trojan.Agent.GBXM also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.GBXM
FireEyeGeneric.mg.de043cf10b4b8e7d
CAT-QuickHealTrojan.Mauvaise.SL1
SkyhighBehavesLike.Win32.Downloader.nm
McAfeeDownloader-BIJ.a
Cylanceunsafe
ZillyaTrojan.MianchaGen.Win32.1
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/CeeInject.49f
K7GWTrojan-Downloader ( 000918cf1 )
K7AntiVirusTrojan-Downloader ( 0040f54b1 )
BitDefenderThetaAI:Packer.54A3CF691F
SymantecTrojan.Dropper
tehtrisGeneric.Malware
ESET-NOD32Win32/TrojanDownloader.Agent.PTT
APEXMalicious
TrendMicro-HouseCallTROJ_DLOADE.SMJ
ClamAVWin.Downloader.Kazy-6804111-0
KasperskyHEUR:Trojan.Win32.Miancha.gen
BitDefenderTrojan.Agent.GBXM
NANO-AntivirusTrojan.Win32.Autoruner.bbwavd
AvastWin32:DropperX-gen [Drp]
TencentTrojan.Win32.Miancha.za
EmsisoftTrojan.Agent.GBXM (B)
BaiduWin32.Trojan.Inject.bm
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Autoruner.27746
VIPRETrojan.Agent.GBXM
TrendMicroTROJ_DLOADE.SMJ
Trapminemalicious.high.ml.score
SophosTroj/DwnLdr-MDK
IkarusSuspectFile
JiangminTrojanDownloader.Small.akba
WebrootW32.Trojan.Coremhead
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/A-1a76837c!Eldorado
Antiy-AVLTrojan[Downloader]/Win32.Rubinurd.b
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Injector.ARA!MTB
XcitiumTrojWare.Win32.Toga.B@6vx8t0
ArcabitTrojan.Agent.GBXM
ViRobotTrojan.Win32.Agent.32786
ZoneAlarmHEUR:Trojan.Win32.Miancha.gen
GDataWin32.Trojan.Agent.ASM
CynetMalicious (score: 100)
AhnLab-V3Backdoor/Win32.CSon.R885
Acronissuspicious
VBA32SScope.Backdoor.Simbot
ALYacTrojan.Agent.GBXM
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
RisingTrojan.Injector!1.A7C6 (CLASSIC)
YandexTrojan.GenAsa!mZGpD9iw6WU
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Downloader.Rubinurd.bf
FortinetW32/Injector.BFSU!tr
AVGWin32:DropperX-gen [Drp]
DeepInstinctMALICIOUS
alibabacloudTrojan[downloader]:Win/Agent.28e531c4

How to remove Trojan.Agent.GBXM?

Trojan.Agent.GBXM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment