Trojan

Trojan.Agent.DHUQ removal guide

Malware Removal

The Trojan.Agent.DHUQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.DHUQ virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Agent.DHUQ?


File Info:

name: 87931D8E8DA68F2629F7.mlw
path: /opt/CAPEv2/storage/binaries/bc8a652f83d26bc5c975794532c3a557da773103d86123e0d63c56ce73dd7ddf
crc32: 663C8B6A
md5: 87931d8e8da68f2629f79e2d93f78745
sha1: 5e5465df4827ba9c4a17565bda37fa2da37eb7e9
sha256: bc8a652f83d26bc5c975794532c3a557da773103d86123e0d63c56ce73dd7ddf
sha512: 20a46d991bfad56fa2ad2b4f79c533935b2dd82b0e509c37b5c8981de42d64bf496702b6c4b0f9b536b82fb524d1a8f25b91d285438d78af5512aa29746dbb25
ssdeep: 12288:bB5eLlq+OT4Yk/E+PeMyAqYRbGh10hYbr1h/SSyYlCOe69f4tDWyPakrNxqr:3+q2eNAZbGh10hI0YkMvyhSr
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1ADF4F120B582F037E8B3057688799679562DBA214B245DFF67C80B2E8F742C1AF31D67
sha3_384: 08b18a475b4f77d9e32ba6bafe604957d116a9402d8c02227e504fb9706b3c7ab15ea165600d0288ebaf169166b25ba1
ep_bytes: e824080000e974feffff8b4df464890d
timestamp: 2018-10-30 13:09:25

Version Info:

0: [No Data]

Trojan.Agent.DHUQ also known as:

BkavW32.AIDetectMalware
AVGWin32:AdwareX-gen [Adw]
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.DHUQ
FireEyeGeneric.mg.87931d8e8da68f26
SkyhighBehavesLike.Win32.Generic.bc
ALYacTrojan.Agent.DHUQ
MalwarebytesCrypt.Trojan.Malicious.DDS
ZillyaTrojan.Kryptik.Win32.4586941
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005402121 )
AlibabaAdWare:Win32/StartSurf.05893699
K7GWTrojan ( 005402121 )
CrowdStrikewin/malicious_confidence_70% (W)
SymantecAdware.IstartSurf
ESET-NOD32a variant of Win32/Kryptik.GMFE
CynetMalicious (score: 99)
APEXMalicious
ClamAVWin.Trojan.Agent-6737666-0
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderTrojan.Agent.DHUQ
NANO-AntivirusTrojan.Win32.Vittalia.fjtsqm
SUPERAntiSpywareAdware.IStartSurf/Variant
TencentMalware.Win32.Gencirc.10b1886a
EmsisoftTrojan.Agent.DHUQ (B)
F-SecureHeuristic.HEUR/AGEN.1318799
DrWebTrojan.Vittalia.13656
VIPRETrojan.Agent.DHUQ
TrendMicroTROJ_GEN.R002C0PBL24
SophosGeneric Reputation PUA (PUA)
IkarusPUA.Win32.Prepscram
JiangminTrojan.Chapak.acm
VaristW32/S-6d1fb8f2!Eldorado
AviraHEUR/AGEN.1318799
Antiy-AVLGrayWare[Bundler]/Win32.Prepscram
KingsoftWin32.Troj.Generic.a
MicrosoftSoftwareBundler:Win32/Prepscram
XcitiumApplication.Win32.IStartSurf.PS@8c4m91
ArcabitTrojan.Agent.DHUQ
ViRobotAdware.Prepscram.766976.LZ
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Generic
GDataTrojan.Agent.DHUQ
GoogleDetected
AhnLab-V3PUP/Win32.BundleInstaller.R241438
McAfeePUP-HJW
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
VBA32BScope.AdWare.StartSurf
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PBL24
RisingTrojan.Generic@AI.100 (RDMK:une9rxak5Ncuqms2ddrV6Q)
YandexTrojan.GenAsa!44T+SNsS5Jk
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.12118273.susgen
FortinetW32/GenKryptik.COAQ!tr
AvastWin32:AdwareX-gen [Adw]
alibabacloudTrojan.Win.UnkAgent

How to remove Trojan.Agent.DHUQ?

Trojan.Agent.DHUQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment