Trojan

GenPack:Trojan.Agent.DQQO (B) removal guide

Malware Removal

The GenPack:Trojan.Agent.DQQO (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Trojan.Agent.DQQO (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine GenPack:Trojan.Agent.DQQO (B)?


File Info:

name: 7EAACBF81509D26B0BBA.mlw
path: /opt/CAPEv2/storage/binaries/341cd3aab4765d836c29c9e39729b2cf02389a992fd656202980a43936927606
crc32: CFC999BC
md5: 7eaacbf81509d26b0bba3efee25b736a
sha1: d6ac71d6839a97f56df798feee31c7fc654a38d7
sha256: 341cd3aab4765d836c29c9e39729b2cf02389a992fd656202980a43936927606
sha512: 66d076d43f1bb7675aae8ec5b7947692a3756ef984757b45d9bf1bd644bc58cd2449b8c05c683092483963e026da7921a6489e97d036e1537947b8c9f1245692
ssdeep: 768:6Ez159nd53E0r6hnFXSoCIyqggGStatYntITkspC+01DfqRy1y26aX/Ld7Iy6+RD:PxrdNcnZSonuSTne7h6J/dxfRQk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B9638EB99FE6CCE9DF5FFBB4040EE8747593A2703F66184B9248951FCC992884836847
sha3_384: 91943908ddae2c28e6a43fa8db9da96996bb89e2ec1a252f833c83126aa59ea5a9ac37c59a21cc98b1837a38fd21635f
ep_bytes: 90909090609067e80000000090905890
timestamp: 2020-07-11 03:39:59

Version Info:

0: [No Data]

GenPack:Trojan.Agent.DQQO (B) also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebBackDoor.HangUp.5
MicroWorld-eScanGenPack:Trojan.Agent.DQQO
FireEyeGenPack:Trojan.Agent.DQQO
McAfeeBackDoor-AXJ.gen
MalwarebytesBackdoor.Padodor
ZillyaTrojan.QukartGen.Win32.1
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.81509d
CyrenW32/S-c46e6d2d!Eldorado
SymantecBackdoor.Berbew.F
TrendMicro-HouseCallBKDR_BERBEW.SMA
ClamAVWin.Trojan.Crypted-29
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGenPack:Trojan.Agent.DQQO
TencentTrojan.Win32.Qukart.ya
Ad-AwareGenPack:Trojan.Agent.DQQO
SophosML/PE-A + Troj/Padodor-M
ComodoWorm.Win32.Qukart.K@565w5t
VIPREBehavesLike.Win32.Malware.ssc (mx-v)
TrendMicroBKDR_BERBEW.SMA
McAfee-GW-EditionBehavesLike.Win32.Backdoor.kc
EmsisoftGenPack:Trojan.Agent.DQQO (B)
SentinelOneStatic AI – Malicious PE
GDataGenPack:Trojan.Agent.DQQO
JiangminBackdoor.Padodor.quz
MAXmalware (ai score=84)
Antiy-AVLTrojan/Generic.ASBOL.16B
ViRobotTrojan.Win32.Padodor.Gen.A
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
ALYacGenPack:Trojan.Agent.DQQO
TACHYONBackdoor/W32.Padodor
APEXMalicious
RisingBackdoor.Berbew!1.AF13 (CLASSIC)
IkarusBackdoor.Win32.Padodor
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.DQQO!tr
PandaBck/Webber.gen
MaxSecureBackdoor.Win32.Padodor.gen

How to remove GenPack:Trojan.Agent.DQQO (B)?

GenPack:Trojan.Agent.DQQO (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment