Malware

What is “Win32/Agent_AGen.BLW”?

Malware Removal

The Win32/Agent_AGen.BLW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.BLW virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/Agent_AGen.BLW?


File Info:

name: B1CAA0153AE9D89629F8.mlw
path: /opt/CAPEv2/storage/binaries/33c90fe7f038b4bc0ca18966f1623bca34ce3152ea9ea0a2c993f68baef9549f
crc32: 5914F743
md5: b1caa0153ae9d89629f843f69afc04ba
sha1: 08f94d81ac6eca3ab4f13dd0545a306ea3e0bff8
sha256: 33c90fe7f038b4bc0ca18966f1623bca34ce3152ea9ea0a2c993f68baef9549f
sha512: bd37371cc60b650e0ff781862292e8586c3bf661e0f9bf8ce97d5820d071a2d00d5e826b16b19a637413853e92ca0231a64e31d598ff94ab59a69c9e2f3e007c
ssdeep: 768:f7zp90ul2xQp0Yir8KkqS8hYxNg3mkgNzYioRoFLq16M:f7jVDilhYbg3mkgEotR
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1EB038E32BDA10D77D6884AF022F64F16AB3E7A51072250E37B4DD8E52E221E19937F47
sha3_384: e651fa4e506f2c5da3c07811b11f86612673cf240673df5ea2943775cf8cdb31ecc1378787a186e2048fbe8864234a18
ep_bytes: 558bec6aff6808c1100268d880100264
timestamp: 2014-04-14 13:22:41

Version Info:

0: [No Data]

Win32/Agent_AGen.BLW also known as:

BkavW32.AIDetectMalware
AVGWin32:Malware-gen
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Triusor.A
FireEyeGeneric.mg.b1caa0153ae9d896
CAT-QuickHealW32.Triusor.A7
SkyhighBehavesLike.Win32.Triusor.nh
ALYacWin32.Triusor.A
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusRiskware ( 0040eff71 )
AlibabaVirus:Win32/Triusor.f087
K7GWRiskware ( 0040eff71 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.BLW
CynetMalicious (score: 100)
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Virus.Triusor-9950242-0
KasperskyVirus.Win32.Agent.fn
BitDefenderWin32.Triusor.A
NANO-AntivirusVirus.Win32.Infector.eazaig
AvastWin32:Malware-gen
TencentVirus.Win32.Agent.fna
EmsisoftWin32.Triusor.A (B)
F-SecureHeuristic.HEUR/AGEN.1366698
DrWebWin32.HLLW.Unjap.293
VIPREWin32.Triusor.A
Trapminemalicious.high.ml.score
SophosW32/Triusor-A
IkarusVirus.Win32.Resur
GDataWin32.Trojan.PSE.1U90Q9W
VaristW32/Triusor.A
AviraHEUR/AGEN.1366698
Antiy-AVLVirus/Win32.Resur.i
XcitiumTrojWare.Win32.Nimnul.A@5waoem
ArcabitWin32.Triusor.A
ZoneAlarmVirus.Win32.Agent.fn
MicrosoftVirus:Win32/Triusor!dam
GoogleDetected
AhnLab-V3Win32/Resur.X1604
Acronissuspicious
McAfeeArtemis!B1CAA0153AE9
MalwarebytesGeneric.Malware.AI.DDS
RisingVirus.Resur!1.B42C (CLASSIC)
YandexTrojan.GenAsa!BugRQtpcKNg
MAXmalware (ai score=82)
MaxSecureVirus.Agent.FN
FortinetW32/Agent.FN
DeepInstinctMALICIOUS
alibabacloudVirus:Win/SennaSpy.D(dyn)

How to remove Win32/Agent_AGen.BLW?

Win32/Agent_AGen.BLW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment