Trojan

Trojan.Agent.BIZC removal

Malware Removal

The Trojan.Agent.BIZC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.BIZC virus can do?

  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (Process Hollowing)
  • Behavioural detection: Injection (inter-process)
  • Creates a copy of itself
  • Deletes executed files from disk
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan.Agent.BIZC?


File Info:

name: 6C29C9BEF5B10087A324.mlw
path: /opt/CAPEv2/storage/binaries/a1f2b9a2370fc5fc5d8856fef0a88360e9d415af433df148102767eda5d4279c
crc32: 5375DB25
md5: 6c29c9bef5b10087a3249b3b52d8c4d6
sha1: d6c3ef09ca51f30bc4ecaec65b93208b9031b55f
sha256: a1f2b9a2370fc5fc5d8856fef0a88360e9d415af433df148102767eda5d4279c
sha512: 930ad448211f3c1ad25ba10becab9ee92e9c4638235155e3af52a542360c242e946f75f6acbe5743566953a761cc161711243c520d8556062035a68ec779945f
ssdeep: 6144:ZyO6zbJycigV5dBqHzXaqA5xtJJAPaEekulnzMLln3lHjIe3zqE:IHz9ycigVP47q/mPeI5n3lHjJ3zv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14AA49CF4B4C090B6C8768677CB5FCAB01612ADAD90B6911B30F43F873667795089BB93
sha3_384: 7a991a087eb02acbaa5126a8a37964bc7b5e09631d82eefca0c16bcce3bfa5b6026b9985a41a5259c87cc27bddbace2c
ep_bytes: e872370000e917feffff558bec83ec08
timestamp: 2015-04-14 05:51:55

Version Info:

0: [No Data]

Trojan.Agent.BIZC also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Zbot.lmue
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.6c29c9bef5b10087
CAT-QuickHealRansom.TeslaCrypt.A3
McAfeeRansom-FZN!6C29C9BEF5B1
ZillyaTrojan.Snocry.Win32.23
SangforTrojan.Win32.Agent.Vufc
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaRansom:Win32/Tescrypt.f4b7ea88
K7GWTrojan ( 0055e3ef1 )
K7AntiVirusTrojan ( 0055e3ef1 )
BitDefenderThetaGen:NN.ZexaF.36350.DqW@a0t3Pzci
VirITTrojan.Win32.FileCryptor.BCO
SymantecW32.Ramnit.B
ESET-NOD32Win32/Filecoder.TeslaCrypt.A
APEXMalicious
ClamAVWin.Trojan.TeslaCrypt-2
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Agent.BIZC
NANO-AntivirusTrojan.Win32.Snocry.dqmmxs
MicroWorld-eScanTrojan.Agent.BIZC
AvastWin32:GenMalicious-LGB [Trj]
TencentMalware.Win32.Gencirc.11533d98
F-SecureTrojan.TR/AD.CryptoLocker.lqmhd
DrWebTrojan.PWS.Siggen1.31160
VIPRETrojan.Agent.BIZC
TrendMicroRansom_Tescrypt.R002C0DGV23
McAfee-GW-EditionRansom-FZN!6C29C9BEF5B1
Trapminesuspicious.low.ml.score
EmsisoftTrojan.Agent.BIZC (B)
IkarusTrojan-Ransom.TeslaCrypt
GDataTrojan.Agent.BIZC
JiangminTrojan/Snocry.g
WebrootW32.Rogue.Gen
AviraTR/AD.CryptoLocker.lqmhd
XcitiumMalware@#3xmitnofi9rk
ArcabitTrojan.Agent.BIZC
SUPERAntiSpywareTrojan.Agent/Gen-Ransom
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftRansom:Win32/Tescrypt.A
GoogleDetected
AhnLab-V3Trojan/Win32.Snocry.R142966
VBA32BScope.TrojanRansom.Tescrypt
ALYacTrojan.Agent.BIZC
MAXmalware (ai score=94)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_Tescrypt.R002C0DGV23
RisingMalware.Undefined!8.C (TFE:5:2wngWBDNnnF)
YandexTrojan.GenAsa!x3w9p5QHzCQ
FortinetW32/Filecoder.EM!tr
AVGWin32:GenMalicious-LGB [Trj]
Cybereasonmalicious.ef5b10
DeepInstinctMALICIOUS

How to remove Trojan.Agent.BIZC?

Trojan.Agent.BIZC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment