Trojan

Trojan.Agent.BIQJ removal instruction

Malware Removal

The Trojan.Agent.BIQJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.BIQJ virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Uses Windows utilities for basic functionality
  • HTTPS urls from behavior.
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Checks for the presence of known windows from debuggers and forensic tools
  • Attempts to identify installed analysis tools by registry key
  • Detects VirtualBox through the presence of a registry key
  • Attempts to modify proxy settings
  • Touches a file containing cookies, possibly for information gathering
  • Collects information to fingerprint the system
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Agent.BIQJ?


File Info:

name: 443CAA7E361339F9D135.mlw
path: /opt/CAPEv2/storage/binaries/2b6e4f29d74b8e54db0ffdc20448463f3d070511a11e5b64cd8442cce5322262
crc32: AC52B71D
md5: 443caa7e361339f9d13546faaa831ff7
sha1: bbe16e4fa6b2ece75e504428549e111a23762701
sha256: 2b6e4f29d74b8e54db0ffdc20448463f3d070511a11e5b64cd8442cce5322262
sha512: fc82bd440fa841d39b82104f0444293b105451590bfe8b61117d0e89f0e788159d5d49df6791e38ce9e06787eb5dfe268e4b4c02ce84e801e469027c04979703
ssdeep: 12288:q4EAU9ISDd35aC/41K7wCneEeMS8IWPjLtBWQ+q+O5O7mNaxOMGq9sG3cY7VWKV:3M2+T4SQFClBn+O5NYJGqKGMY7VrV
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1DC550201E6D0E22EF9920D7A0535D3D64AFC3F385E3090AB3B90EEDD5A35AA18715B53
sha3_384: 41088ee351ca9dbd57415ceab64c46ad2f450c81191bfbb5acccda28f185f895c29e9a1c315e8effc4645927e48d2f4e
ep_bytes: e876130000e995feffff8bff558bec8b
timestamp: 2010-07-20 18:11:14

Version Info:

OriginalFilename: dehygoiwnep.exe
ProductName: DEHYGOIWNEP
FileVersion: 1.0.8.4
ProductVersion: 1.0.8.4
FileDescription: tykahiesonbet ewarrycye ichaeh oholmiriegs ygtar wepounmawipoat onumtehoe emohig
InternalName: DEHYGOIWNEP.EXE
LegalCopyright: ©Yafantywia
CompanyName: ©Yafantywia
Translation: 0x0409 0x04e4

Trojan.Agent.BIQJ also known as:

BkavW32.Common.5E04CBD6
LionicTrojan.Win32.Badur.4!c
MicroWorld-eScanTrojan.Agent.BIQJ
FireEyeGeneric.mg.443caa7e361339f9
CAT-QuickHealTrojan.Badur.A3
SkyhighBehavesLike.Win32.Infected.tt
McAfeeGenericRXAF-ME!443CAA7E3613
Cylanceunsafe
ZillyaTrojan.AnySend.Win32.4
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Kryptik.320ee23b
K7GWTrojan ( 0056ede31 )
K7AntiVirusTrojan ( 0056ede31 )
BaiduWin32.Adware.Kryptik.i
VirITTrojan.Win32.Crypt4.LQC
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.DEQS
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Agent.BIQJ
NANO-AntivirusTrojan.Win32.Badur.dpuusf
AvastWin32:Evo-gen [Trj]
TencentMalware.Win32.Gencirc.10b20032
SophosMal/Generic-S
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Ticno.22
VIPRETrojan.Agent.BIQJ
TrendMicroTROJ_GEN.R002C0PAO24
Trapminemalicious.high.ml.score
EmsisoftTrojan.Agent.BIQJ (B)
SentinelOneStatic AI – Malicious PE
GDataTrojan.Agent.BIQJ
JiangminTrojan/Badur.ikz
GoogleDetected
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Badur
KingsoftWin32.Trojan.Generic.a
ArcabitTrojan.Agent.BIQJ
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Caynamer.A!ml
VaristW32/Badur.L.gen!Eldorado
BitDefenderThetaGen:NN.ZexaF.36744.pn0@aancs2fi
ALYacTrojan.Agent.BIQJ
MAXmalware (ai score=100)
VBA32BScope.Trojan.Ticno
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PAO24
RisingTrojan.Generic@AI.97 (RDML:50FvmsStOGRFHNfYt0Mfww)
YandexTrojan.Badur!rq1DpiDYg0Q
IkarusPUA.Multibar.Ff
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.DEQS!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.fa6b2e
DeepInstinctMALICIOUS

How to remove Trojan.Agent.BIQJ?

Trojan.Agent.BIQJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment