Trojan

Trojan.Agent.FACJ removal

Malware Removal

The Trojan.Agent.FACJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.FACJ virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (3 unique times)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

iplogger.org
ocsp.comodoca.com
ocsp.usertrust.com
ocsp.sectigo.com
caissetunisie.com

How to determine Trojan.Agent.FACJ?


File Info:

crc32: 5E1496FA
md5: 107fe810309d392811fb898622aa607c
name: 107FE810309D392811FB898622AA607C.mlw
sha1: da82f9894db9b0a9b3cc9565a0c71e3e851cf98b
sha256: d03c84a13b8e6274f7353fd98e35f73c194938b61690a9a8a83c594a40994dec
sha512: 1def7eff04fac2e9ce8f8f54655ade9640dfe81d0bf957762d173b13ef5d6681ef212418f8fd0e72d0d40fa0d2b0e1c1a3f05805ab0009bf2db3f175cd3d7d84
ssdeep: 1536:vU+AIFt7FeLuMI8Orz99qsOCGMfZovSCC:vU+Aet0aZ3RHovW
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.FACJ also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.FACJ
FireEyeGeneric.mg.107fe810309d3928
CAT-QuickHealTrojan.IGENERIC
ALYacTrojan.Agent.FACJ
CylanceUnsafe
VIPREVirTool.Win32.Obfuscator.da!k (v)
SangforMalware
BitDefenderTrojan.Agent.FACJ
BitDefenderThetaGen:NN.ZexaF.34688.quY@aWZSMFhi
CyrenW32/Trojan.UXAX-3921
SymantecML.Attribute.HighConfidence
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-PSW.Win32.Fareit.gen
AlibabaTrojanPSW:Win32/Fareit.1a88ff00
ViRobotTrojan.Win32.Z.Agent.272072
Ad-AwareTrojan.Agent.FACJ
EmsisoftTrojan.Agent.FACJ (B)
F-SecureTrojan.TR/AD.JamkeeDldr.exevx
DrWebTrojan.Siggen11.54855
TrendMicroTROJ_GEN.R023C0WLB20
McAfee-GW-EditionRDN/Generic PWS.y
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
eGambitPE.Heur.InvalidSig
AviraTR/AD.JamkeeDldr.exevx
KingsoftWin32.PSWTroj.Undef.(kcloud)
GridinsoftTrojan.Win32.Agent.oa
ArcabitTrojan.Agent.FACJ
ZoneAlarmHEUR:Trojan-PSW.Win32.Fareit.gen
GDataTrojan.Agent.FACJ
McAfeeRDN/Generic PWS.y
MAXmalware (ai score=100)
MalwarebytesSpyware.RaccoonStealer
PandaTrj/GdSda.A
ESET-NOD32a variant of Generik.BKPKPDE
TrendMicro-HouseCallTROJ_GEN.R023C0WLB20
TencentWin32.Trojan.Inject.Auto
IkarusTrojan.SuspectCRC
FortinetW32/Generik.BKPKPDE!tr
WebrootW32.Malware.Gen
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
Qihoo-360Generic/Trojan.02f

How to remove Trojan.Agent.FACJ?

Trojan.Agent.FACJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment