Threat Database Trojans Trojan.Agent.BVJ

Trojan.Agent.BVJ

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 26,878
Threat Level: 80 % (High)
Infected Computers: 3
First Seen: July 8, 2025
Last Seen: May 2, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Agent.BVJ
Packers: UPX x64
Signature status: No Signature

Known Samples

MD5: a9d19a311d1799c38a1fc9c0bc0ee2f0
SHA1: e7c97b965799721cc316c56cbaa104a9883ab8f0
SHA256: 7F351283B19E16ED947FADFC3998DB680FA255C3B7A1A770E939B9B7ED3C01C5
File Size: 631.92 KB, 631920 bytes
MD5: 584834279477dddb48c5301283a08bcf
SHA1: bc5a01d1de97aa5fb8db6cf6591b29adfa07c1c1
SHA256: 3D16BFE93DB1047282484935646D835746CF6599CB957CBCFE36FA8114C45D93
File Size: 258.56 KB, 258560 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have resources
  • File doesn't have security information
  • File has been packed
  • File is 64-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
Show More
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Description TotalAV Setup
File Version 6.3.376.0
Legal Copyright (C) Total Security Limited
Original Filename TotalAV.exe
Product Name TotalAV
Product Version 6.3.376.0

Digital Signatures

Signer Root Status
Total Security Limited GlobalSign Code Signing Root R45 Hash Mismatch

File Traits

  • big overlay
  • Installer Version
  • No Version Info
  • packed
  • WriteProcessMemory
  • x64

Block Information

Total Blocks: 355
Potentially Malicious Blocks: 316
Whitelisted Blocks: 39
Unknown Blocks: 0

Visual Map

x x x x x x x x x x x x x x x 0 0 0 x x x 0 x x x x x x x x x x x 0 x x x x x 0 x 1 x x 0 0 0 0 0 x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 x x x x x x x x x x x x x x x x x x x 0 x x x x x 0 x x x x x x x x x x x 0 0 0 x x x x x x x x x x x x x x x x x x x 0 x x x x x x x x x x x 0 x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 x x 0 x x x x x x x x x x x x x x x x x x x x 0 x x x 0 x 0 x 0 x x x x x x x x x x x x 0 0 x x x 0 x x 0 0 x x x x x x x x 0 0 x x 0 0 x x x x x 0 x x x x x x x x x x x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.BVJ

Files Modified

File Attributes
\device\namedpipe\gmdasllogger Generic Write,Read Attributes

Windows API Usage

Category API
Syscall Use
  • ntdll.dll!NtApphelpCacheControl
  • ntdll.dll!NtClose
  • ntdll.dll!NtCreateSection
  • ntdll.dll!NtDeviceIoControlFile
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtMapViewOfSection
  • ntdll.dll!NtOpenFile
  • ntdll.dll!NtOpenKey
  • ntdll.dll!NtOpenSection
  • ntdll.dll!NtProtectVirtualMemory
Show More
  • ntdll.dll!NtQueryAttributesFile
  • ntdll.dll!NtQueryInformationProcess
  • ntdll.dll!NtQueryInformationThread
  • ntdll.dll!NtQueryPerformanceCounter
  • ntdll.dll!NtQuerySecurityObject
  • ntdll.dll!NtQuerySystemInformation
  • ntdll.dll!NtQueryValueKey
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtReadRequestData
  • ntdll.dll!NtReleaseWorkerFactoryWorker
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationVirtualMemory
  • ntdll.dll!NtSetInformationWorkerFactory
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtTraceControl
  • ntdll.dll!NtUnmapViewOfSection
  • ntdll.dll!NtUnmapViewOfSectionEx
  • ntdll.dll!NtWaitForSingleObject
  • ntdll.dll!NtWriteFile
  • UNKNOWN

Trending

Most Viewed

Loading...