Malware

Win32:Agent-AWJP [Trj] removal guide

Malware Removal

The Win32:Agent-AWJP [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Agent-AWJP [Trj] virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Creates a hidden or system file

How to determine Win32:Agent-AWJP [Trj]?


File Info:

crc32: 1483848E
md5: 70f38d0df4b4b536cb33d09fc450bf23
name: 70F38D0DF4B4B536CB33D09FC450BF23.mlw
sha1: c37f8a22ca55497eece59a46c69fe2a094b72a6d
sha256: 497d578db94b8c400b0ebbe1d298531ef186873768ca0f540b02a35ca0d2a89a
sha512: c99ac099f9d74ad202176cfbcc14b9e3ea2826499a5b0791248aa116788b19cb45e14025bb6241c613c64f4e5341665114d5f1a3bc074b6dd228de0ffc19f6ed
ssdeep: 12288:rK0VR9Qxp2/YDCsUM2cgzjSMsuPMXvoHoeZubtJdCLIf3ZwpZ9Oy:GIR91mUM/gKMNPMXAWhCLIPZa9Oy
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: QQ 1790042182
FileVersion: 1.13.2013.625
CompanyName: QQ 1790042182
Comments: x963fPx8f6fx4ef6x4e4bx9690x85cfx6258x76d8x56fex6807xff0cQQ 1790042182
ProductName: x963fPx8f6fx4ef6x4e4bx9690x85cfx6258x76d8x56fex6807xff0cQQ 1790042182
ProductVersion: 1.13.2013.625
FileDescription: x963fPx8f6fx4ef6x4e4bx9690x85cfx6258x76d8x56fex6807xff0cQQ 1790042182
Translation: 0x0804 0x04b0

Win32:Agent-AWJP [Trj] also known as:

DrWebBackDoor.Pigeon1.12272
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 005246d51 )
K7AntiVirusTrojan ( 005246d51 )
CyrenW32/Trojan.CLL.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:Agent-AWJP [Trj]
ClamAVWin.Malware.Zusy-6840460-0
SophosGeneric PUA MD (PUA)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.70f38d0df4b4b536
SentinelOneDFI – Malicious PE
F-ProtW32/Trojan.CLL.gen!Eldorado
Endgamemalicious (moderate confidence)
eGambitHackTool.Generic
Antiy-AVLGrayWare/Win32.FlyStudio.a
MicrosoftTrojan:Win32/Wacatac.C!ml
AegisLabTrojan.Multi.Generic.4!c
Acronissuspicious
McAfeeArtemis!70F38D0DF4B4
VBA32Trojan.Tiggre
RisingMalware.Heuristic!ET#83% (RDMK:cmRtazp5ILLWnFOkCjiDuU+7vp1g)
IkarusRootkit.Win32.Agent
FortinetPossibleThreat
AVGFileRepMalware

How to remove Win32:Agent-AWJP [Trj]?

Win32:Agent-AWJP [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment