Trojan

Trojan:Win32/Agent.AAM removal guide

Malware Removal

The Trojan:Win32/Agent.AAM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Agent.AAM virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Trojan:Win32/Agent.AAM?


File Info:

name: 8D0094F78675BADADDB9.mlw
path: /opt/CAPEv2/storage/binaries/6eb8b3a5a766eda4b3ce641fa27acbbe6bbfbc4934ecfe556c723f73a0c5a240
crc32: 4FF89B89
md5: 8d0094f78675badaddb9fafd0b2e22b2
sha1: b8fa32ae3f960c21a2d78ee41989442d4aa3f9c7
sha256: 6eb8b3a5a766eda4b3ce641fa27acbbe6bbfbc4934ecfe556c723f73a0c5a240
sha512: 594c9bbde8c4ed1a1ff1b3ea2e8ef03cc1be623f96a07be81b1f1adf079446f5eb5939cde94e6b6be95bfed0fa16afc451530201d28a5e822d2b31567a34c13e
ssdeep: 3072:LFsNAKhVBOjWVQCnueriQXJo8BcbmNVS8PZYHULsWjWc+CsPAjiBTR68lCmiU5D:L+hSWVOQXJo8BcaNA8PK0XjWcnXodiU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1944449123290C877D3A313710ED2EBB966A6BC308AA1964FE2653B3D2D355D3493735E
sha3_384: 8103993aa7fdb019989cb0313d4ca95298233d8c8f80171f8953e3d20ca371e0ade5d2667b7375bbc3173a65975f8cb9
ep_bytes: 6a6068c8b84200e89b0e0000bf940000
timestamp: 2010-10-13 15:41:53

Version Info:

FileVersion: 1.0.0.17
ProductVersion: 1.0.0.17
Translation: 0x0804 0x03a8

Trojan:Win32/Agent.AAM also known as:

LionicTrojan.Win32.OnLineGames.a!c
AVGWin32:Trojan-gen
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Wsgame.26050
MicroWorld-eScanGen:Variant.KillAV.6
FireEyeGen:Variant.KillAV.6
SkyhighBehavesLike.Win32.Infected.dh
McAfeeGenericRXAA-FA!8D0094F78675
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.OnLineGames.Win32.234176
SangforDownloader.Win32.Gamup.Vkid
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojanDownloader:Win32/Gamup.17191232
K7GWTrojan ( 003591001 )
K7AntiVirusTrojan ( 003591001 )
BitDefenderThetaGen:NN.ZexaF.36802.qq0@amdCCAab
VirITTrojan.Win32.OLG.AZDF
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Agent.ADTF
CynetMalicious (score: 99)
APEXMalicious
ClamAVWin.Spyware.81475-2
KasperskyTrojan-Downloader.Win32.Gamup.ptm
BitDefenderGen:Variant.KillAV.6
NANO-AntivirusTrojan.Win32.OnLineGames.cxwsf
AvastWin32:Trojan-gen
TencentTrojan.Win32.BHO.ad
EmsisoftGen:Variant.KillAV.6 (B)
F-SecureTrojan.TR/Dldr.Nirava.14
BaiduWin32.Trojan.BHO.n
VIPREGen:Variant.KillAV.6
TrendMicroTSPY_ONLING.SMIH
SophosTroj/Darbyen-A
JiangminTrojan/PSW.OnLineGames.cjvt
VaristW32/OnlineGames.IQ.gen!Eldorado
AviraTR/Dldr.Nirava.14
MAXmalware (ai score=100)
Antiy-AVLTrojan[GameThief]/Win32.OnLineGames
Kingsoftmalware.kb.a.912
MicrosoftTrojan:Win32/Agent.AAM
XcitiumTrojWare.Win32.Downloader.Agent.NIRA@4l68db
ArcabitTrojan.KillAV.6
ViRobotTrojan.Win32.PSWIGames.266240.M
ZoneAlarmTrojan-Downloader.Win32.Gamup.ptm
GDataGen:Variant.KillAV.6
GoogleDetected
AhnLab-V3Win-Trojan/Onlinegamehack21.Gen
VBA32TrojanPSW.OnLineGames.xi
ALYacGen:Variant.KillAV.6
TACHYONTrojan-PWS/W32.WebGame.266240.S
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTSPY_ONLING.SMIH
RisingDownloader.Gamup!8.234 (TFE:5:9xtTSVqQdEC)
IkarusTrojan-PWS.OnlineGames
MaxSecureGameThief.OnLineGames.xich
FortinetW32/ZLob.AAAA!tr.dldr
DeepInstinctMALICIOUS
alibabacloudTrojan[downloader]:Win/Agent.A

How to remove Trojan:Win32/Agent.AAM?

Trojan:Win32/Agent.AAM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment