Gridinsoft Logo

Cls-srep_x86.exe Trojan Agent Analysis

Technical Analysis

File Name cls-srep_x86.exe
File Type
PE32 executable (console) Intel 80386, for MS Windows
Scanner Version 1.0.219.174
Database Version 2025-07-07 20:00:28 UTC

Trojan.Win32.Agent.cl

Malware family: Agent

Trojan Agent malware disguises itself as legitimate software while performing unauthorized activities including data theft and providing remote system access to threat actors.
N/A
Detection Rate
181,760
File Size (bytes)
2025-07-07
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
4e1184838f7b10e0d3848ef5cc7aba21
SHA1
f9bbf81c45c813ccd205c0dfd331e4fbed475715
SHA256
2d537c66f8080a51f4cfddc412e1e976828b1fdf840d7b0ceca57e41c2e2eeb2
SHA512
0823a69e1e82d4aed75ecbcc7430e441165646a289f15be674aa54c80e390ffbd50c2e7c7337daf0c7eb12d27a99104073db73c7ef626491677df933e5d50a35
ImpHash
35311ec8ab3b5caa3950d07500cb1cc2

PE Analysis

Basic Information

Image Base 0x00400000
Entry Point 0x0040b1cd
Compilation Time 2017-12-29 13:23:15
Checksum 0x00000000 (Actual: 0x0003013f)
OS Version 6.0
PEiD Signatures PE32 executable (console) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 3 libraries
KERNEL32, USER32, ole32
Exports 0 functions
Resources 0 Resources
Sections 5 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 125,926 bytes 125,952 bytes 6.65 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ E3F0AC30AF1D0540615FFB284638020D
.rdata 0x00020000 46,112 bytes 46,592 bytes 5.56 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A7D6DFDD63F73F10A4A52415EAF03457
.data 0x0002c000 150,044 bytes 5,120 bytes 2.28 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 2977D181DB0F17FD6F92DD58D12D4262
.data1 0x00051000 1,312 bytes 1,536 bytes 0.76 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 6788C35C193976287120A8E6C288FA27
_RDATA 0x00052000 1,344 bytes 1,536 bytes 4.22 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 7279CB0277FE59130F0B86AFEA8F94D7
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Trojan.Win32.Agent.cl Removal

Gridinsoft has the capability to identify and eliminate Trojan.Win32.Agent.cl without requiring further user intervention.

Download Anti-Malware

Removal Instructions

Follow these steps to completely remove the threat from your system

  1. Start by downloading Gridinsoft Anti-Malware to your computer.
  2. Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  3. Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  4. Click on the "Standard Scan" button to begin scanning your computer for threats.
  5. After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  6. If prompted, restart your system to complete the removal process and ensure all threats are eliminated.
Important: Before You Start
Disconnect from the internet to prevent the malware from spreading or downloading additional threats. Run the scan in Safe Mode for better detection and removal of persistent threats.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware