Trojan

About “Dropped:Trojan.AgentWDCR.ERJ (B)” infection

Malware Removal

The Dropped:Trojan.AgentWDCR.ERJ (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Trojan.AgentWDCR.ERJ (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • HTTPS urls from behavior.
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • CAPE detected the FloodFix malware family
  • Attempts to modify proxy settings
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Dropped:Trojan.AgentWDCR.ERJ (B)?


File Info:

name: 3FBC47E6AD53B921A794.mlw
path: /opt/CAPEv2/storage/binaries/00d8b4621c5a8e38cad27c9156dc8f9a547ea90cb35167d509d2c4b6f08d4a59
crc32: 43569993
md5: 3fbc47e6ad53b921a794f2b9a6221648
sha1: c8c265d7bd35e50426cea299e1e7618786fa80c6
sha256: 00d8b4621c5a8e38cad27c9156dc8f9a547ea90cb35167d509d2c4b6f08d4a59
sha512: e0dc4650dca5cfd01eb908cbca93052e141ebeb964fb7236102c4015d8b4b2e489894b6c08dadd0ca2e1b8d616ce09ee9af0fd60cfd0a36fa68f55aabf2b9904
ssdeep: 6144:CnPdyYMzmhBfTRvqCqk2J4cBlBV+UdvrEFp7hKZVOhk+:CnPdHtBhqLecBjvrEH7yVOG+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13C24DF047780C7EDE069063035AEEBA336F2F83D056F5657F742534BACACA06EE49616
sha3_384: 8ca83b56de3c4b346a1835f7162b13da60879e9eea706da840b0e141d3e37a0ca567f73928d4b130939203dc947e6fb2
ep_bytes: e841deffffc33c608bec83c52454e855
timestamp: 2023-07-02 02:09:43

Version Info:

CompanyName: The qBittorrent project
FileDescription: qBittorrent - A Bittorrent Client
FileVersion: 4.6.3
LegalCopyright: Copyright ©2006-2024 The qBittorrent project
ProductName: qBittorrent
Translation: 0x0409 0x04b0

Dropped:Trojan.AgentWDCR.ERJ (B) also known as:

ElasticWindows.Virus.Floxif
MicroWorld-eScanDropped:Trojan.AgentWDCR.ERJ
CAT-QuickHealW32.Pioneer.CZ1
SkyhighBehavesLike.Win32.Backdoor.dc
Cylanceunsafe
SangforVirus.Win32.Save.Floxif
CrowdStrikewin/malicious_confidence_100% (D)
SymantecTrojan.Gen.6
APEXMalicious
ClamAVWin.Virus.Pioneer-9111434-0
KasperskyVirus.Win32.Pioneer.cz
NANO-AntivirusVirus.Win32.Pioneer.bvrqhu
AvastWin32:MalOb-FE [Cryp]
EmsisoftDropped:Trojan.AgentWDCR.ERJ (B)
GoogleDetected
F-SecureMalware.W32/Floxif.iici
DrWebWin32.FloodFix.7
SophosW32/Floxif-G
IkarusVirus.Win32.Floxif.A
JiangminTrojan.Generic.eeffo
VaristW32/Floxif.B
AviraW32/Floxif.iici
MAXmalware (ai score=80)
Antiy-AVLVirus/Win32.Floxif
XcitiumVirus.Win32.Floxif.A@7h5wha
ArcabitTrojan.AgentWDCR.ERJ
ZoneAlarmVirus.Win32.Pioneer.cz
MicrosoftVirus:Win32/Floxif.H
ALYacDropped:Trojan.AgentWDCR.ERJ
VBA32Virus.Win32.Floxif.h
MalwarebytesGeneric.Malware.AI.DDS
PandaGeneric Suspicious
SentinelOneStatic AI – Malicious PE
FortinetW32/Floxif.E
AVGWin32:MalOb-FE [Cryp]
Cybereasonmalicious.6ad53b
DeepInstinctMALICIOUS

How to remove Dropped:Trojan.AgentWDCR.ERJ (B)?

Dropped:Trojan.AgentWDCR.ERJ (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment