Malware

Win32/Agent_AGen.APE (file analysis)

Malware Removal

The Win32/Agent_AGen.APE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.APE virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.APE?


File Info:

name: 340DD3EEB85E2CF9C27F.mlw
path: /opt/CAPEv2/storage/binaries/5a17c0d5e4d45cd9b096fd624fdc058906a7ea6d6dd8ff2ecec6745fbe9e2f52
crc32: F6294609
md5: 340dd3eeb85e2cf9c27f9d2611f2aa4f
sha1: 5511fc6a0f12e7f2c04f24731f4bbdfed60b462b
sha256: 5a17c0d5e4d45cd9b096fd624fdc058906a7ea6d6dd8ff2ecec6745fbe9e2f52
sha512: 2262ef9dbed3855463674f5b7929de942b0a633e0af55aecd8f6d39e377b9d7d13326773f2630a986e23100764a3df7359c7086dcd1b260022d1455706cbf390
ssdeep: 768:qHIN0X3Ditx5QeGTwK0NHXsH6bJCYhx8HV0kvcjRForor/wSuUCw:qHzitxaHTwKqWAxcpvcnoror9u7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T114732B2AF3820466CE8CF679B31B6ACB15E7715E4B8F264372263779BC74D500966307
sha3_384: 54018640eb889e5387bef0b0f27b9adccd600639fce924a2479e5c1c08a15cbe550baa52c0871f68ecec2c36c34fe670
ep_bytes: 58431066604310666843106670431066
timestamp: 2000-01-01 12:00:00

Version Info:

0: [No Data]

Win32/Agent_AGen.APE also known as:

BkavW32.AIDetectMalware
DrWebTrojan.DownLoad.41501
CynetMalicious (score: 100)
CAT-QuickHealW32.Virut.E
McAfeeGenericRXAA-AA!340DD3EEB85E
MalwarebytesMalware.AI.3425097632
SangforSuspicious.Win32.Save.vb
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.F7C6567B1D
VirITWorm.Win32.VBNA.FBU
CyrenW32/VB.W.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.APE
APEXMalicious
KasperskyWorm.Win32.WBNA.roc
BitDefenderTrojan.GenericKDZ.89957
NANO-AntivirusVirus.Win32.Virut.flko
MicroWorld-eScanTrojan.GenericKDZ.89957
AvastWin32:VB-NAG [Wrm]
TencentWorm.Win32.Wbna.pg
EmsisoftTrojan.GenericKDZ.89957 (B)
F-SecureMalware.W32/Virut.AT
BaiduWin32.Worm.VB.jl
VIPRETrojan.GenericKDZ.89957
TrendMicroTROJ_GEN.R03BC0REF23
McAfee-GW-EditionBehavesLike.Win32.Generic.lz
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.340dd3eeb85e2cf9
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKDZ.89957
JiangminWorm.WBNA.qkdo
AviraW32/Virut.AT
MAXmalware (ai score=83)
Antiy-AVLWorm/Win32.VBNA
XcitiumWorm.Win32.VBNA.fbu0@1ej37u
ArcabitTrojan.Generic.D15F65
ZoneAlarmWorm.Win32.WBNA.roc
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
Acronissuspicious
ALYacTrojan.GenericKDZ.89957
Cylanceunsafe
PandaTrj/Genetic.gen
ZonerProbably Heur.ExeHeaderL
TrendMicro-HouseCallTROJ_GEN.R03BC0REF23
RisingTrojan.Autorun!1.DA78 (CLASSIC)
YandexTrojan.GenAsa!NCN7rMc348E
IkarusWorm.Win32.VBNA
MaxSecureTrojan.Malware.6351850.susgen
FortinetW32/VBObfus.BDBD!tr
AVGWin32:VB-NAG [Wrm]
Cybereasonmalicious.eb85e2
DeepInstinctMALICIOUS

How to remove Win32/Agent_AGen.APE?

Win32/Agent_AGen.APE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment