Trojan

Win32/TrojanDownloader.Agent.FJR information

Malware Removal

The Win32/TrojanDownloader.Agent.FJR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Agent.FJR virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The sample wrote data to the system hosts file.
  • Anomalous binary characteristics

Related domains:

1fichler.com

How to determine Win32/TrojanDownloader.Agent.FJR?


File Info:

crc32: AE6BFA0B
md5: 015dd61bce0205fb5e5c893a6feb5308
name: upload_file
sha1: a2fed612da1af680d2abde232cdc35f2879e7a5f
sha256: eb00200334f8adca5820d9036174d59cb8ca0e0d5a85d9693fb2ec39981039a2
sha512: a65317ddc25d5e3e0af5c07a4cc8f5821ce953e8cce8e14caaf73b31e72baaa0c2739e6295dc40bc0e057f3d13a8295616bf3154f1c36e9204fad4ca18a7599b
ssdeep: 6144:8YnFJ3dmZVjbWssrr1xX+K2vvmAFrv+Mun6pExMNgn8vzwxtZJfG5:/GfbWser1Fl2veA1i6pyuRvzsZJfG5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompanyName: IObit
Translation: 0x0409 0x04e4

Win32/TrojanDownloader.Agent.FJR also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.34771733
FireEyeGeneric.mg.015dd61bce0205fb
CAT-QuickHealTrojan.Wacatac
McAfeeRDN/Generic Downloader.x
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Zenpak.4!c
SangforMalware
K7AntiVirusTrojan ( 005711031 )
BitDefenderTrojan.GenericKD.34771733
K7GWTrojan ( 005711031 )
CrowdStrikewin/malicious_confidence_90% (W)
TrendMicroTROJ_GEN.R03BC0DJH20
CyrenW32/Trojan.DQAC-0411
SymantecPacked.Generic.459
APEXMalicious
AvastWin32:DangerousSig [Trj]
KasperskyTrojan.Win32.Zenpak.awxq
AlibabaTrojanDownloader:Win32/CryptInject.8c41f933
NANO-AntivirusTrojan.Win32.Zenpak.hzttfg
RisingTrojan.GenCBL!8.12138 (TFE:2:5Cr4YzrK4TE)
Ad-AwareTrojan.GenericKD.34771733
EmsisoftTrojan.GenericKD.34771733 (B)
ComodoMalware@#3ibvh1zbt2rgw
F-SecureTrojan.TR/Crypt.XPACK.aowoa
DrWebTrojan.Hosts.48016
ZillyaTrojan.Zenpak.Win32.4120
InvinceaMal/Generic-R + Mal/EncPk-APV
McAfee-GW-EditionRDN/Generic Downloader.x
SophosMal/EncPk-APV
IkarusTrojan-Spy.Agent
JiangminTrojan.Zenpak.dlg
MaxSecureTrojan.Malware.1728101.susgen
AviraTR/Crypt.XPACK.aowoa
MAXmalware (ai score=84)
Antiy-AVLGrayWare/Win32.Kryptik.ehls
MicrosoftTrojanDownloader:Win32/CryptInject!MSR
ArcabitTrojan.Generic.D2129315
ZoneAlarmTrojan.Win32.Zenpak.awxq
GDataTrojan.GenericKD.34771733
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R354238
BitDefenderThetaGen:NN.ZexaF.34590.Sq1@a8A6Aeeb
ALYacTrojan.GenericKD.34771733
VBA32BScope.TrojanDownloader.Buerak
MalwarebytesTrojan.Downloader
PandaTrj/CI.A
ESET-NOD32Win32/TrojanDownloader.Agent.FJR
TrendMicro-HouseCallTROJ_GEN.R03BC0DJH20
TencentWin32.Trojan.Falsesign.Chp
YandexTrojan.Zenpak!v2r1jRSFWPE
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Zenpak.AWXQ!tr
WebrootW32.Trojan.Gen
AVGWin32:DangerousSig [Trj]
Cybereasonmalicious.2da1af
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.818

How to remove Win32/TrojanDownloader.Agent.FJR?

Win32/TrojanDownloader.Agent.FJR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment