Trojan

Trojan.Agent.CQYP information

Malware Removal

The Trojan.Agent.CQYP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.CQYP virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Russian
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
binoculuz.club

How to determine Trojan.Agent.CQYP?


File Info:

crc32: 2994F2C8
md5: d7eea6b1b20d3decb3ab31cb050ec851
name: D7EEA6B1B20D3DECB3AB31CB050EC851.mlw
sha1: 4c262c5b63fd6def262aa613966ac2117958f33d
sha256: f93b929fd411c7beff6663a37caa1de41ad1231d82266fe2c272216738b09374
sha512: 5665b41ac946723ff7ece5cbcba2869d6b572ee9b8db381a3346e9b278a5d15e020daca9ebae94eab4177e36b501c897a7391d7d856a5334f4c54d5af39dab71
ssdeep: 6144:wwcmiTU2JqsbE8me5VAOmkjh7hN7UF1DXH:wwcD7EfKN11N7UF1XH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Agent.CQYP also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.CQYP
FireEyeGeneric.mg.d7eea6b1b20d3dec
CAT-QuickHealTrojan.Tiggre
Qihoo-360Win32/Virus.Adware.b51
McAfeeGenericRXDH-SD!D7EEA6B1B20D
CylanceUnsafe
ZillyaDownloader.Tovkater.Win32.632
SangforMalware
K7AntiVirusTrojan-Downloader ( 0051d85c1 )
BitDefenderTrojan.Agent.CQYP
K7GWTrojan-Downloader ( 0051d85c1 )
Cybereasonmalicious.1b20d3
CyrenW32/S-aecd50f4!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
NANO-AntivirusRiskware.Win32.TOVus.evgodp
AegisLabRiskware.Win32.Generic.1!c
RisingMalware.Obscure/Heur!1.A89E (CLASSIC)
Ad-AwareTrojan.Agent.CQYP
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.HS@7e9h6a
F-SecureAdware.ADWARE/Adware.Gen7
DrWebTrojan.DownLoader25.59708
VIPRETrojan.Win32.Generic!BT
TrendMicroPossible_HPGen-32a
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
EmsisoftTrojan.Agent.CQYP (B)
SentinelOneStatic AI – Suspicious PE
JiangminAdWare.TOVus.dp
AviraADWARE/Adware.Gen7
MAXmalware (ai score=99)
Antiy-AVLGrayWare[AdWare]/Win32.TOVus
MicrosoftTrojan:Win32/Tiggre!plock
ArcabitTrojan.Agent.CQYP
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Generic
GDataTrojan.Agent.CQYP
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.Agent.R214067
BitDefenderThetaGen:NN.ZexaF.34804.ZCY@am3CYhdc
ALYacTrojan.Agent.CQYP
TACHYONTrojan/W32.Agent.848384.BH
VBA32AdWare.TOVus
MalwarebytesAdware.InstallMonster
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/TrojanDownloader.Tovkater.HT
TrendMicro-HouseCallPossible_HPGen-32a
TencentMalware.Win32.Gencirc.10b20f4c
YandexTrojan.GenAsa!+txUjpp3zfI
IkarusTrojan-Downloader.Win32.Tovkater
eGambitUnsafe.AI_Score_94%
FortinetW32/Tovkater.HT!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)
MaxSecureWin.MxResIcn.Heur.Gen

How to remove Trojan.Agent.CQYP?

Trojan.Agent.CQYP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment