Malware

Troj/Agent-BGWJ removal instruction

Malware Removal

The Troj/Agent-BGWJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Agent-BGWJ virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

findmemolite.com
ocsp.digicert.com
collect.installeranalytics.com
x.ss2.us

How to determine Troj/Agent-BGWJ?


File Info:

crc32: 98B53890
md5: 973c06d41e64ee06557ae86068b88631
name: 973C06D41E64EE06557AE86068B88631.mlw
sha1: 7c69fc8c965a2ca08adbe36183a708bc30a8fb30
sha256: 20a8e06e0b165d5450c75c6e138c41a8b225811b9eb40cfcde427940ffa5f8aa
sha512: e92261969990da25c07fe788ebf3c7810a4c243e83f01a60e9008f50a33502b1b3f133f26bdc0c0e2faf86664a379efff99f34cbbd6e2f4983c89c14abd5baf0
ssdeep: 1536:KpgpHzb9dZVX9fHMvG0D3XJ54Romu/dFEkuIOJDIfbmBW4/FtyZX:IgXdZt9P6D3XJ545vIbfiBW4NtyZX
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Troj/Agent-BGWJ also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoad4.14362
Cybereasonmalicious.c965a2
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Injuke.gen
SophosTroj/Agent-BGWJ
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.cm
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1142844
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
VBA32suspected of Trojan.Downloader.gen
MalwarebytesTrojan.AdLoad

How to remove Troj/Agent-BGWJ?

Troj/Agent-BGWJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment