Trojan

How to remove “Android/TrojanDownloader.Agent.JN”?

Malware Removal

The Android/TrojanDownloader.Agent.JN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Android/TrojanDownloader.Agent.JN virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Android/TrojanDownloader.Agent.JN?


File Info:

name: 4CF1A14F67C5C6356FCB.mlw
path: /opt/CAPEv2/storage/binaries/ea7e7a56eb625e37f83556fb0c215f53c88da80a58200b3a9b5a0546df7c87b6
crc32: A3620B32
md5: 4cf1a14f67c5c6356fcb6ca07ae84ad6
sha1: 3746e8e742b574db7e8846237d4a9ec7eb6474a0
sha256: ea7e7a56eb625e37f83556fb0c215f53c88da80a58200b3a9b5a0546df7c87b6
sha512: 695d6d88534a7bc4864006188b4e09c7938cb8ca4367a8d8fd6f55fa976b329afc11717cdeda6ea4eb3451375bf3814b9f95fcec4042028362319d03f67c03a8
ssdeep: 12288:w6ErxJMTtEulzQ2uZYXSsMMm1bEyNt+7ZYW4:wJr8tE+0sMLq6W4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T118D4CF296BC1C876C2622D782AF3D73861BD6C203F739A83D735B5B99F319C47912681
sha3_384: 09df8b8a007b7c4d7cdf0e7803f4a8bfaaf969acf122af0ca298b3596a7d3a4b5cd8092314ae8eb1c2edca801738208e
ep_bytes: e80c060000e978feffffe97f450000cc
timestamp: 2022-03-03 13:16:04

Version Info:

0: [No Data]

Android/TrojanDownloader.Agent.JN also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Barys.317446
FireEyeGeneric.mg.4cf1a14f67c5c635
CAT-QuickHealAndroid.Agent.ACZ
ALYacGen:Variant.Barys.317446
K7GWTrojan ( 0048d4b21 )
VirITAndroid.Trj.RemoteCode.KC
CyrenAndroidOS/Downloader.M.gen!Eldorado
ESET-NOD32a variant of Android/TrojanDownloader.Agent.JN
KasperskyHEUR:Trojan-Downloader.AndroidOS.Agent.jy
BitDefenderGen:Variant.Barys.317446
CynetMalicious (score: 100)
AvastAndroid:Metasploit-G [PUP]
Ad-AwareGen:Variant.Barys.317446
SophosGeneric ML PUA (PUA)
DrWebAndroid.RemoteCode.6833
VIPREGen:Variant.Barys.317446
SentinelOneStatic AI – Suspicious PE
EmsisoftGen:Variant.Barys.317446 (B)
APEXMalicious
AviraANDROID/TrojanDldr.FNAA.Gen
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASMalwAD.DC1
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Barys.317446
GoogleDetected
McAfeeArtemis!606BB90DF89F
VBA32Trojan.Wacatac
RisingDownloader.Agent/Android!8.3A1 (KTSE)
IkarusTrojan-Downloader.AndroidOS.Agent
FortinetAndroid/Agent.JN!tr
AVGAndroid:Metasploit-G [PUP]
Cybereasonmalicious.742b57

How to remove Android/TrojanDownloader.Agent.JN?

Android/TrojanDownloader.Agent.JN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment