Spy Trojan

Trojan-Spy.Win32.Agent.juok malicious file

Malware Removal

The Trojan-Spy.Win32.Agent.juok is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.Win32.Agent.juok virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan-Spy.Win32.Agent.juok?


File Info:

name: 4CE70FECC84DA08C5406.mlw
path: /opt/CAPEv2/storage/binaries/8e014b15544f5b09da437f86450f652db10fa60bdc038f7a0d5154b427f2ccc1
crc32: F2029DEA
md5: 4ce70fecc84da08c54063a51d6e41ba4
sha1: 443cf6353538280c0cd87c957deb87a09c973f91
sha256: 8e014b15544f5b09da437f86450f652db10fa60bdc038f7a0d5154b427f2ccc1
sha512: 373838637c06015691f4377d6cc22e316cf120ab6f7636e0477bdf828b9350b77ce7781000d6035cd1088a34fc60aaa8986ab9c6439f19d6f39db8d78ea8c72f
ssdeep: 24576:IodkhiiNPaBIEjujpWHLvznSZPXvIVZQfSFm9j1xe7EWUx/:IoCPm2CbgQwPPU7zUp
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T105B54BC1E2C0E273C9661478F626CC71A33B6E1C568E480D27D9FD6736BB6838572987
sha3_384: b6eb84cfdbd5280ecc93994d7d2378d014089fffbc7fbb6d6c08011974715920b175da4aa2f53c7d5e21d27f04b93f2c
ep_bytes: 558bec83c4ec33c08945ecb818c84900
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Trojan-Spy.Win32.Agent.juok also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Graftor.178790
FireEyeGen:Variant.Graftor.178790
McAfeeArtemis!4CE70FECC84D
CylanceUnsafe
SangforTrojan.Win32.Agent.eoaar
AlibabaTrojanSpy:Win32/Generic.50e0a05a
Cybereasonmalicious.cc84da
BitDefenderThetaGen:NN.ZexaCO.34062.8qZ@aWgkKEdk
TrendMicro-HouseCallTROJ_GEN.R002C0PL821
Paloaltogeneric.ml
KasperskyTrojan-Spy.Win32.Agent.juok
BitDefenderGen:Variant.Graftor.178790
NANO-AntivirusTrojan.Win32.Mailer.dvpxyl
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Doina.9276
EmsisoftGen:Variant.Graftor.178790 (B)
ComodoMalware@#29jwu2pder3wa
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PL821
McAfee-GW-EditionBehavesLike.Win32.Dropper.vh
SophosMal/Generic-S
IkarusRootkit.Agent
AviraRKIT/Agent.eoaar
MAXmalware (ai score=86)
MicrosoftTrojan:Win32/Wacatac.B!ml
APEXMalicious
GDataGen:Variant.Doina.9276
VBA32BScope.Trojan.MulDrop
ALYacGen:Variant.Doina.9276
YandexTrojan.GenAsa!DFWS5gkj9Lw
MaxSecureTrojan.Malware.1728101.susgen
FortinetW32/GenericRXBW.VP!tr
AVGWin32:Malware-gen
PandaTrj/CI.A

How to remove Trojan-Spy.Win32.Agent.juok?

Trojan-Spy.Win32.Agent.juok removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment