Trojan

Trojan.Agent.BRIQ malicious file

Malware Removal

The Trojan.Agent.BRIQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.BRIQ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Attempts to remove evidence of file being downloaded from the Internet
  • Attempts to delete volume shadow copies
  • Exhibits behavior characteristic of Alphacrypt/Teslacrypt ransomware
  • Installs itself for autorun at Windows startup
  • Writes a potential ransom message to disk
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan.Agent.BRIQ?


File Info:

crc32: EFD874A3
md5: 1d46f87737ca1591b52ef272100ccab2
name: 1D46F87737CA1591B52EF272100CCAB2.mlw
sha1: e0a0f3c73c3829a71eaf2444d9e71977227a8799
sha256: a45bd6e5fec24298c6453c29f5046fe9346366da194da4fc26935c5482c58734
sha512: f5de0eaa8e55d07772f8faa0664ddc10378a630050ca8afbb0c855e066d585459b2fd59d6a3b06f466a0bbd99c2f5f5a5c2c8d52df6a0117f07ff6334a5aa332
ssdeep: 6144:QMeb/EDtpBx1aRXJub19pf3gOURaJmf+ubexB3wLaYZSzvF:QTb/wtN1aRXJg1f3gO9Jm+u2BgeYkzv
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2000-2016 JD Project. This software is licensed under the terms of the GNU General Public License.
InternalName: jdtool
FileVersion: 2.8.3.0
CompanyName: JhnDoe Inc.
ProductName: JDoe Tool
ProductVersion: 2.8.2.0
FileDescription: JDoe Tool
OriginalFilename: jdtool.exe
Translation: 0x0809 0x04b0

Trojan.Agent.BRIQ also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004e00071 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.4084
CynetMalicious (score: 100)
CAT-QuickHealRansomware.Gen.WR1
ALYacTrojan.Agent.BRIQ
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.868910
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Starter.ali2000005
K7GWTrojan ( 004e00071 )
Cybereasonmalicious.737ca1
CyrenW32/S-0448e947!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.EQGQ
APEXMalicious
AvastWin32:TeslaCrypt-HS [Trj]
ClamAVWin.Malware.TeslaCrypt-7549364-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Agent.BRIQ
NANO-AntivirusTrojan.Win32.Bitman.eawuds
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanTrojan.Agent.BRIQ
TencentMalware.Win32.Gencirc.10c258ae
Ad-AwareTrojan.Agent.BRIQ
SophosMal/Generic-R + Mal/EncPk-ANR
ComodoTrojWare.Win32.Crypmod.EQL@6b1qbt
BitDefenderThetaGen:NN.ZexaF.34628.wu0@aa2udnki
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CRYPTESLA.CBQ1637
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.1d46f87737ca1591
EmsisoftTrojan.Agent.BRIQ (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Bitman.qh
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1121416
eGambitGeneric.Malware
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Tescrypt!rfn
ArcabitTrojan.Agent.BRIQ
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.Agent.BRIQ
AhnLab-V3Trojan/Win32.Teslacrypt.C1344536
McAfeeRansom-Tescrypt!1D46F87737CA
MAXmalware (ai score=100)
VBA32Hoax.Bitman
MalwarebytesRansom.TeslaCrypt
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_CRYPTESLA.CBQ1637
RisingRansom.Tescrypt!8.3AF (CLOUD)
YandexTrojan.Bitman!idDLCQ30KcI
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.ESRN!tr
AVGWin32:TeslaCrypt-HS [Trj]
Qihoo-360Win32/Ransom.Bitman.HxQBEpsA

How to remove Trojan.Agent.BRIQ?

Trojan.Agent.BRIQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment