Trojan

Trojan.Agent.BPRQ removal guide

Malware Removal

The Trojan.Agent.BPRQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.BPRQ virus can do?

  • Unconventionial language used in binary resources: Norwegian (Bokmal)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan.Agent.BPRQ?


File Info:

name: D2095AF7520968BD8A7F.mlw
path: /opt/CAPEv2/storage/binaries/69b9a45c179c2533d89cc77454e721d3a5f1840ec940fe876b29953aaad0508c
crc32: E7C8338D
md5: d2095af7520968bd8a7f92292876e6d1
sha1: 09c15105f034a1c9e2617b524db302de93f5616a
sha256: 69b9a45c179c2533d89cc77454e721d3a5f1840ec940fe876b29953aaad0508c
sha512: 3c2f79b6b42fea0e60e501329991a5dabca6cfbe99e3c950d1c062b2938b7d3f18f917ab1e56ef23548d64d57d55cdd314cfc6fb36b6e91dcd0facc8ac6a15e2
ssdeep: 3072:k8Zc0hTH53F/y0nzTd6UjIWVvn+o43IHS4Nz:40XXzxHhve3IHd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13FF3E11355A1F69DF8B69F3F85D61D01CB8A7306832B546E18C2614B0900BD7AE9FFB2
sha3_384: 88da0be33ed495d8518e2fc00f2ec279554a643b92c04bbe31a05440259f13e89dba44b82792a18de64ae4777f9dc0e6
ep_bytes: 558bec83ec24893424687c4940008914
timestamp: 2002-06-21 10:26:09

Version Info:

CompanyName: Macromedia, Inc.
FileDescription: Macromedia Flash Player 7.0 r19
FileVersion: 7,0,19,0
InternalName: Macromedia Flash Player 7.0
LegalCopyright: Copyright © 1996-2003 Macromedia, Inc.
LegalTrademarks: Macromedia Flash Player
OriginalFilename: SAFlashPlayer.exe
ProductName: Shockwave Flash
ProductVersion: 7,0,19,0
Translation: 0x0409 0x04b0

Trojan.Agent.BPRQ also known as:

BkavW32.AIDetect.malware1
DrWebTrojan.Rmnet.1
MicroWorld-eScanTrojan.Agent.BPRQ
CAT-QuickHealTrojanPWS.Zbot.Y
ALYacTrojan.Agent.BPRQ
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0047bf9a1 )
K7GWTrojan ( 0047bf9a1 )
Cybereasonmalicious.752096
VirITTrojan.Win32.Cryptic.EBU
CyrenW32/Ramnit.H.gen!Eldorado
SymantecPacked.Protexor!gen1
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Ramnit.V
TrendMicro-HouseCallTROJ_RAMNIT.SMD
ClamAVWin.Packed.Ramnit-9946126-0
KasperskyUDS:Trojan.Win32.Generic
BitDefenderTrojan.Agent.BPRQ
NANO-AntivirusTrojan.Win32.Facebook.flltyq
SUPERAntiSpywareTrojan.Agent/Gen-ShieldFace
AvastWin32:Virut-AQM
TencentTrojan.Win32.Ramnit.a
Ad-AwareTrojan.Agent.BPRQ
EmsisoftTrojan.Agent.BPRQ (B)
ComodoTrojWare.Win32.Spy.Zbot.WEBA@4min4f
F-SecureTrojan.TR/Crypt.XPACK.Gen
BaiduWin32.Trojan.Nimnul.a
VIPRETrojan.Agent.BPRQ
TrendMicroTROJ_RAMNIT.SMD
McAfee-GW-EditionBehavesLike.Win32.Infected.ct
SentinelOneStatic AI – Malicious PE
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.d2095af7520968bd
SophosML/PE-A + W32/Ramnit-BM
IkarusVirus.Win32.Heur
GDataTrojan.Agent.BPRQ
JiangminWin32/Virut.bv
AviraTR/Crypt.XPACK.Gen
Antiy-AVLVirus/Win32.Virut.ce
ArcabitTrojan.Agent.BPRQ
ViRobotWorm.Win32.A.Net-Koobface.197632
ZoneAlarmUDS:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Ramnit.A
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Krap.R27995
McAfeePWS-Zbot.gen.di
VBA32Malware-Cryptor.Win32.General.4
MalwarebytesMalware.AI.3552599394
APEXMalicious
RisingWorm.Win32.Koobface.ji (CLASSIC)
YandexTrojan.GenAsa!bqvDTpij54g
MAXmalware (ai score=81)
FortinetW32/CoinMiner.F
AVGWin32:Virut-AQM
PandaTrj/Pck_Pretorx.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Agent.BPRQ?

Trojan.Agent.BPRQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment