Malware

How to remove “Generic.AutoHotKey.Agent.A.9907BD42”?

Malware Removal

The Generic.AutoHotKey.Agent.A.9907BD42 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.AutoHotKey.Agent.A.9907BD42 virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generic.AutoHotKey.Agent.A.9907BD42?


File Info:

name: C88CFB430AAEC53CA8AD.mlw
path: /opt/CAPEv2/storage/binaries/d5036896468f4ad685114fe8f382b5aebb8afe37d7ca007e2f1972aea1910cfa
crc32: 1B45494C
md5: c88cfb430aaec53ca8add94d2fa19792
sha1: 29662a9c62b94661e8f90bec3fcb6229f4234925
sha256: d5036896468f4ad685114fe8f382b5aebb8afe37d7ca007e2f1972aea1910cfa
sha512: 9c7b867213912df50d87798c4ce012edb656ac658b2f414416b2bbeea46bbc74e2bd28549987092a3686ab534a11e1a558fe12c1d45b43845004092375587084
ssdeep: 24576:6G2s/vZn2WTiFYCcQj/unPKa6oyzqxjvZYZ:Vp26yVzqBv2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EA056B56B3D7D0B6DFA626F3C6B48372193AB934173C89CB7390282DE8906C17A35359
sha3_384: 10374c0a07fc963c1de0446f89d8366a32df346b810b430381d179c7f6713e4b01970b48f94d1edd9e1c2671f3fddee7
ep_bytes: e8505e0000e989feffffcccccc568b44
timestamp: 2019-11-24 04:49:56

Version Info:

0: [No Data]

Generic.AutoHotKey.Agent.A.9907BD42 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGeneric.AutoHotKey.Agent.A.9907BD42
FireEyeGeneric.AutoHotKey.Agent.A.9907BD42
CAT-QuickHealPUA.AgentPMF.S24861111
SkyhighBehavesLike.Win32.Generic.ch
McAfeeTrojan-FUCG!C88CFB430AAE
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005add041 )
K7GWTrojan ( 005add041 )
ArcabitGeneric.AutoHotKey.Agent.A.9907BD42
VirITTrojan.Win32.Generic.CDD
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.AHK.G suspicious
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Misc-9950733-0
KasperskyTrojan.Win32.AHRun.gen
BitDefenderGeneric.AutoHotKey.Agent.A.9907BD42
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Agent.kb
TACHYONTrojan/W32.Agent.824832.CC
EmsisoftGeneric.AutoHotKey.Agent.A.9907BD42 (B)
F-SecureHeuristic.HEUR/AGEN.1319416
VIPREGeneric.AutoHotKey.Agent.A.9907BD42
SophosTroj/AutoHK-N
IkarusPUA.AHK
VaristW32/FakeFolder.T.gen!Eldorado
AviraHEUR/AGEN.1319416
MicrosoftTrojan:Win32/FakeFolder.EA!MTB
ZoneAlarmTrojan.Win32.AHRun.gen
GDataWin32.Trojan.PSE.1EA9LG1
GoogleDetected
ALYacGeneric.AutoHotKey.Agent.A.9907BD42
MAXmalware (ai score=82)
Cylanceunsafe
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.119781068.susgen
FortinetRiskware/FakeFolder
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.AutoHotKey.Agent.A.9907BD42?

Generic.AutoHotKey.Agent.A.9907BD42 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment