Malware

Should I remove “Win32/Agent.AELJ”?

Malware Removal

The Win32/Agent.AELJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent.AELJ virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/Agent.AELJ?


File Info:

name: 516874CC5DA4A47C8F7A.mlw
path: /opt/CAPEv2/storage/binaries/59bf052a4b7b1a7a3ac972d7a21e15e649aba13d0c3883a8a9b8ba46ed47ae64
crc32: A5CCCCA8
md5: 516874cc5da4a47c8f7a9e1d84069a56
sha1: 7f6c2a42d1ae854433b309cd26db565db77f6b82
sha256: 59bf052a4b7b1a7a3ac972d7a21e15e649aba13d0c3883a8a9b8ba46ed47ae64
sha512: 170ef4485fe42b7fdd885e2040a1abab03603ad8b612b92afbe1378abdf922c5d1b7b72aa4d7f118c7b72b930953d28251b3ced52cf35107de93a8423a95de3c
ssdeep: 6144:zbSDV7nULZ99s5tG3XQWRSvwFMj7BHPIEFHWoUx0MYMxSGBZNMFl4Zvz:zbSFnQZLKUFS4FMj7NPnFHWfxL3NMFlC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A174D041B982CC62E43B43390CA4D5A47A3C69E10AE1CC9B737B76F21AD52E11D3DB5B
sha3_384: 4f95e4c0465d80b3e6e6750e929d69456f6a4e62287744510714970660e4aa8176de46bd1bcccfaff9cb4f0445de2508
ep_bytes: e8fc030000e980feffff558beceb1fff
timestamp: 2022-07-11 10:07:18

Version Info:

0: [No Data]

Win32/Agent.AELJ also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
FireEyeGeneric.mg.516874cc5da4a47c
McAfeeArtemis!516874CC5DA4
CylanceUnsafe
K7AntiVirusTrojan ( 005958dc1 )
K7GWTrojan ( 005958dc1 )
Cybereasonmalicious.2d1ae8
ESET-NOD32a variant of Win32/Agent.AELJ
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
Trapminemalicious.high.ml.score
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.Agent.RKDPRM
JiangminTrojan.Multi.ljf
AviraTR/Agent.sqlrv
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C5204546
RisingTrojan.Generic@AI.84 (RDML:4JxllxvFenzz1XVnMZ7KXA)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.AELJ!tr
BitDefenderThetaGen:NN.ZexaF.34786.vyW@aqky7dci
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Win32/Agent.AELJ?

Win32/Agent.AELJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment