Threat Database Trojans Trojan.Agent.BKD

Trojan.Agent.BKD

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 14,304
Threat Level: 80 % (High)
Infected Computers: 830
First Seen: June 10, 2021
Last Seen: July 9, 2026
OS(es) Affected: Windows

The detection of Trojan.Agent.BKD on your system indicates a potential security threat that requires immediate attention. This type of malware is designed to compromise the integrity of your computer, steal sensitive information, or disrupt its normal functioning. It is essential to understand the nature of this threat and take prompt action to remove it and prevent future infections.

What Is Trojan.Agent.BKD?

Trojan.Agent.BKD is a type of Trojan horse malware, which is a broad category of malicious software that disguises itself as legitimate or harmless. The name "Trojan" is derived from the legendary Trojan Horse, symbolizing how this malware infiltrates systems by deception. Unlike viruses, Trojans do not replicate but can cause significant harm by creating backdoors for other malware, stealing data, or allowing unauthorized access to the infected computer.

How Trojan.Agent.BKD Operates

Trojan.Agent.BKD, like other Trojans, operates by infiltrating a system through various means such as exploiting vulnerabilities in software, deceiving users into installing it (often bundled with legitimate software), or through phishing attacks. Once inside, it can perform a range of malicious activities. It may communicate with its command and control servers to receive instructions, which could include downloading additional malware, stealing sensitive information like login credentials or financial data, or using the infected computer as part of a botnet for distributed denial-of-service (DDoS) attacks.

Symptoms of Infection

Identifying a Trojan infection can be challenging because these malware types are designed to operate stealthily. However, some common symptoms may indicate an infection: unusual system behavior, such as unexpected crashes or slowdowns; appearance of unwanted programs or toolbars; unexpected changes in system settings; or increased network activity without apparent cause. Sometimes, Trojans may not exhibit obvious symptoms, making regular system monitoring and antivirus scans crucial for detection.

How to Remove Trojan.Agent.BKD

  1. Enter Safe Mode with Networking to limit the malware's ability to interfere with the removal process. This mode loads only the essential drivers and services, making it easier to remove malicious software.
  2. Perform a full scan of your system using a reputable antivirus tool such as SpyHunter. Ensure your antivirus software is updated with the latest definitions to improve the chances of detecting and removing the malware.
  3. Uninstall suspicious programs that you do not recognize or that were installed around the time you suspect the infection occurred. Be cautious and only remove programs you are certain are malicious or unnecessary.
  4. Reset your web browsers (Chrome, Firefox, Edge, etc.) to their default settings. This can help remove any malicious extensions or settings changes made by the Trojan.
  5. Reboot your computer and perform another scan to ensure the malware has been completely removed. Regularly scanning your system after removal can help detect any potential reinfections or remnants of the malware.

Conclusion

Removing Trojan.Agent.BKD requires careful and immediate action to prevent further damage to your system and protect your personal data. By understanding how Trojans operate and following the steps outlined for removal, you can help secure your computer and prevent future infections. Regular system updates, cautious internet browsing habits, and the use of reputable antivirus software are key components of a comprehensive security strategy. Remember, vigilance and proactive measures are crucial in the ongoing battle against malware and other cyber threats.

Analysis Report

General information

Family Name: Trojan.Agent.BKD
Signature status: No Signature

Known Samples

MD5: c1c4bc4788a8e2281f363fe8b534085e
SHA1: edb9af04d5993b71c16383af4171b650558421a1
SHA256: E3CED74429F4B3CAA9FB807875DF2340C1BB52B8085781C2FF4FAA42832B81A5
File Size: 2.53 MB, 2531328 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name Lansweeper
File Description Lansweeper LocalDB Sql Service UI
Legal Copyright Lansweeper
Product Name Lansweeper LocalDB Service
Product Version 1.2.8.2

File Traits

  • x86

Block Information

Total Blocks: 5,298
Potentially Malicious Blocks: 652
Whitelisted Blocks: 4,595
Unknown Blocks: 51

Visual Map

0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x x 0 x ? x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 x x 0 0 0 0 0 0 0 0 0 x 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x x x x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x x x x x 0 0 0 x 0 0 x x 0 x x x x x x x x x x x x 0 0 0 x x x x x x x x x x x x 0 x x 0 x x x 0 x x x x x x 0 x x x x x x x x x x x x x x x x x x x x x 0 x x x x x x x x x x x x x 0 x x 0 x 0 0 x x x x x x x x x x x x x x x x 0 0 x x x x 0 x x x x x 0 x 0 0 x x x x x x x x x x x 0 0 0 0 x x 0 x x x 0 x x x x x x x x x x x x 0 x x x x x x 0 x 0 x 0 x 0 0 0 0 0 0 x x 0 0 x x x 0 x 0 0 x x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x x 0 x x 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 x 0 0 0 x 0 0 0 0 0 x x 0 0 0 0 0 x 0 0 0 x 0 0 0 x x 0 0 0 0 x 0 x x 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x x x 0 0 0 0 0 0 0 x 0 0 x 0 0 x x x 0 0 0 0 0 0 x 0 x x 0 0 0 0 0 ? 0 x 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x 0 0 0 x 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 ? ? 0 ? ? 0 ? ? 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 x 0 0 0 ? 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 x x 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 x 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 x 0 x 0 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 0 x 0 0 x 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x 0 x 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 ? 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x x x 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 x 0 0 0 0 0 x 0 0 0 0 x 0 0 0 0 0 0 x x x 0 x x 0 0 0 0 0 x 0 0 x 0 x x 0 0 0 x x 0 0 x x x x 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 ? 0 0 0 x 0 0 0 0 0 0 0 0 x 0 0 0 0 x x x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 x x x 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x x 0 0 x 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x 0 0 0 0 0 x 0 x 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x 0 0 x 0 0 0 0 0 ? ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 x 0 0 0 x 0 0 0 x 0 x x x x 0 0 0 0 0 x x 0 0 x 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x 0 0 0 x 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 ? ? 0 0 0 0 x 0 x 0 0 0 0 0 0 0 x 0 0 0 x 0 0 x 0 0 0 0 x 0 0 0 0 0 0 0 x x 0 0 0 0 0 x 0 0 0 0 x 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 x 0 x 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 ? ? x 0 ? ? 0 ? 0 0 ? 0 0 ? ? 0 0 0 0 x 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.ACD
  • Agent.BKD

Trending

Most Viewed

Loading...