Malware

About “Win32/Agent_AGen.BMY” infection

Malware Removal

The Win32/Agent_AGen.BMY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.BMY virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/Agent_AGen.BMY?


File Info:

name: D1B51D4A8D63EF55F671.mlw
path: /opt/CAPEv2/storage/binaries/5828659c2c81c561e57526eb66b5a864bdac381e506aa7234a4c4f0cd398976b
crc32: 1FC321E6
md5: d1b51d4a8d63ef55f6714e680c11e3be
sha1: 62848410c544f07df8b4926fca7e63059c1add09
sha256: 5828659c2c81c561e57526eb66b5a864bdac381e506aa7234a4c4f0cd398976b
sha512: 1a1c25292378b0d60430f355bb8afe1ba83470ac64eac2438cc2d6e789640d11dc8b3ea9bd5179f5622489664f19a2ca8ea81bfef537dc5bc9904b57da6afa37
ssdeep: 49152:GUrwTq0y35rqWIbtrcFsWIO3jUpPk58Q:GNawbRnVO3jiPk9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T196C5330252F7E238EC3ADFF7C4867110017A6B6A625A0CBEC7985377E59204DE71A4F9
sha3_384: 5d75f51b4b0275e0745f5a4d1b505f97fc9f0bb32458f1d58240373184b2c3b34fbb6173a6bc06a652c07fa6df40ba3e
ep_bytes: 565053e801000000cc5889c3402d0060
timestamp: 2021-07-18 04:18:15

Version Info:

0: [No Data]

Win32/Agent_AGen.BMY also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
ClamAVWin.Malware.Bulz-9885819-0
FireEyeGeneric.mg.d1b51d4a8d63ef55
SkyhighBehavesLike.Win32.Generic.vh
McAfeeArtemis!D1B51D4A8D63
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Generic.Win32.1445873
SangforTrojan.Win32.Agent.V7fk
K7AntiVirusTrojan ( 0040f4ef1 )
AlibabaTrojan:Win32/Generic.30d2e2c3
K7GWTrojan ( 0040f4ef1 )
Cybereasonmalicious.0c544f
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.BMY
ZonerProbably Heur.ExeHeaderL
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
AvastWin32:Trojan-gen
SophosMal/Generic-S
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen14.42431
Trapminemalicious.high.ml.score
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.gzqnv
GoogleDetected
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Generic
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.Agent.D3ET8R
VaristW32/Bulz.BH.gen!Eldorado
AhnLab-V3Trojan/Win.Generic.R432968
BitDefenderThetaGen:NN.ZexaE.36744.EAW@a47BIKp
Cylanceunsafe
RisingTrojan.Woreflint!8.F5EA (TFE:1:M8SbCWKftjH)
YandexTrojan.Agent!HxrF3BgCm+o
IkarusWin32.Outbreak
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Agent.84F2!tr
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Agent_AGen.BMY?

Win32/Agent_AGen.BMY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment