Spy Trojan

Should I remove “Trojan.Spy.Agent.GK”?

Malware Removal

The Trojan.Spy.Agent.GK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Spy.Agent.GK virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan.Spy.Agent.GK?


File Info:

name: 312FE2AA66FD50B19AC8.mlw
path: /opt/CAPEv2/storage/binaries/a70cd8f60d6f3cc32eed6dd5ab41a1ebe0f21f83cf308b2883b668161464d53f
crc32: 326B0F76
md5: 312fe2aa66fd50b19ac8ce00278caf53
sha1: 27aabe23e3bb76429861184f2994d30f509af639
sha256: a70cd8f60d6f3cc32eed6dd5ab41a1ebe0f21f83cf308b2883b668161464d53f
sha512: 64b9e017ce6ae3b22b42e6a493a71506707db5ff506dfd6e9537a8513563371b2b4763c3a3666d0357ed0ade8232b0093030258417a82f888296095c30c9b9bd
ssdeep: 3072:mfPWn235d8IqDuc1SoktuUtziP4Z6vMG7PbzKjTk+K:Wen2351Y16CbKjTk+K
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T118C36C33F581C076C12769B99C69D1E66059BA301F2E1887BAFE5F0CBF6E192152C2D3
sha3_384: 0f234c68b710aee9c495e87a470c2444f7481406cbb2640cc66fb299e48c2f237b07b9766d6d1374e245915d908900e8
ep_bytes: 558bec83ec4456ff159ca041008bf08a
timestamp: 2005-05-23 18:50:56

Version Info:

0: [No Data]

Trojan.Spy.Agent.GK also known as:

BkavW32.AIDetect.malware1
tehtrisGeneric.Malware
DrWebTrojan.DownLoader.47668
MicroWorld-eScanTrojan.Spy.Agent.GK
FireEyeGeneric.mg.312fe2aa66fd50b1
McAfeeRDN/Generic PWS.y
SangforTrojan.Win32.Save.a
Cybereasonmalicious.a66fd5
ArcabitTrojan.Spy.Agent.GK
BitDefenderThetaGen:NN.ZexaF.34638.hqW@aGRr4um
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
KasperskyTrojan-Spy.Win32.Agent.gk
BitDefenderTrojan.Spy.Agent.GK
NANO-AntivirusTrojan.Win32.Agent.dlhxam
AvastWin32:Malware-gen
Ad-AwareTrojan.Spy.Agent.GK
EmsisoftTrojan.Spy.Agent.GK (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
SophosMal/Generic-S
IkarusBackdoor.Win32.Optix
AviraTR/Dldr.Delphi.Gen
MAXmalware (ai score=85)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.Spy.Agent.GK
ALYacTrojan.Spy.Agent.GK
APEXMalicious
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan.Spy.Agent.GK?

Trojan.Spy.Agent.GK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment