Backdoor

Backdoor.VB.Agent.KQ malicious file

Malware Removal

The Backdoor.VB.Agent.KQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.VB.Agent.KQ virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Backdoor.VB.Agent.KQ?


File Info:

name: 979C137610A1BF56A55C.mlw
path: /opt/CAPEv2/storage/binaries/b6f5190e21dd1dd8a97eb42d5b595400a192ec9400d675540aec5a97afe58e5e
crc32: BD9AE0E2
md5: 979c137610a1bf56a55c73a55e3fdece
sha1: ed33507f416e34eb7b590ff34c63541d3923b99b
sha256: b6f5190e21dd1dd8a97eb42d5b595400a192ec9400d675540aec5a97afe58e5e
sha512: e3d2269d12b22db7049b1e95113896747b89a4459eb2bc0f479f897035ad1d25626cdfc03fcedd63a7ccd41f086746dc680b717f3c298b6e1b7b102442867c36
ssdeep: 768:PogJNZDM+ib/byzdSIvAMFDxb4NHVGKkGTYOthGn7wkj:QgJghTwdSlMFOjs8kj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DD23C4A3BFB55864F15816346DFFA3F6C262F9AD4E0382430F5422395BE7E411C68A93
sha3_384: cd5f8a58ddb3fb4bd4f21fad61ed26b188d16d8acbd894e946a0789589b5df061bed61f0a2a41f2c98b85b350f05e590
ep_bytes: 68c4124000e8eeffffff000000000000
timestamp: 2012-04-27 19:36:12

Version Info:

0: [No Data]

Backdoor.VB.Agent.KQ also known as:

BkavW32.AIDetect.malware1
DrWebTrojan.DownLoader11.20151
MicroWorld-eScanBackdoor.VB.Agent.KQ
ALYacBackdoor.VB.Agent.KQ
Cybereasonmalicious.610a1b
CyrenW32/Vobfus.RM.gen!Eldorado
SymantecW32.Changeup
Elasticmalicious (high confidence)
ClamAVWin.Packed.Vobfus-9806522-0
KasperskyTrojan.Win32.VBKrypt.ltuh
BitDefenderBackdoor.VB.Agent.KQ
AvastWin32:VB-ACOX [Trj]
Ad-AwareBackdoor.VB.Agent.KQ
EmsisoftBackdoor.VB.Agent.KQ (B)
F-SecureTrojan.TR/Barys.2229.jh.4
McAfee-GW-EditionBehavesLike.Win32.Duptwux.pt
SentinelOneStatic AI – Malicious PE
FireEyeGeneric.mg.979c137610a1bf56
SophosML/PE-A + Mal/SillyFDC-X
IkarusTrojan.Barys
GDataBackdoor.VB.Agent.KQ
JiangminTrojan/Vobfus.gaz
AviraTR/Barys.2229.jh.4
ZoneAlarmTrojan.Win32.VBKrypt.ltuh
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeVBObfus.dv
APEXMalicious
YandexTrojan.VBGent.Gen.1324
MAXmalware (ai score=81)
MaxSecureTrojan.VBKrypt.ltuh
FortinetW32/VBObfus.AU!tr
AVGWin32:VB-ACOX [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Backdoor.VB.Agent.KQ?

Backdoor.VB.Agent.KQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment