Malware

Win32/Agent_AGen.CQD information

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: F7F6C48CD00E0628B4A0.mlw
path: /opt/CAPEv2/storage/binaries/a4111a233285f3503c8cd95ed5b3745b9a90aba4e1c64416b369340e4ef015f7
crc32: 6915384C
md5: f7f6c48cd00e0628b4a0165b8bc73b7f
sha1: ff2bb0498c113935ebf9a1b7df1821c913d62c15
sha256: a4111a233285f3503c8cd95ed5b3745b9a90aba4e1c64416b369340e4ef015f7
sha512: 2aef351c502a6ea2cc51dfb526926821f0355bb9fa1a2e8f0e2aec1e5a50c74027c74743d1011b164060870d86d7e6340832bae3c66e3b4a020dbf861701e84d
ssdeep: 192:0Mem8TpWU8LqIbtVsOtYQDoPfLnqDE045HQPRaRaRaRaR:09mkQ4mVsOtYQUPfLqDE045H2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T142032B52A1BE11F0FF8949B7437B159620BB79307FD79F4E089AB4513F9A640410AB4F
sha3_384: 45ca5e12e9f0e1720c09802fd3574cb6527aac5bc4de07d3694dfdf3f479f127200b92645fb99e247b04b8b2f2116ff0
ep_bytes: f4a42c6fc9c7e56fd4adbdc5cd7ecf9e
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Cerbu.173465
FireEyeGeneric.mg.f7f6c48cd00e0628
SkyhighBehavesLike.Win32.Generic.pz
McAfeeArtemis!F7F6C48CD00E
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Cerbu.173465
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Cerbu.173465
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36792.cmY@aihbphl
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
CynetMalicious (score: 100)
SophosGeneric ML PUA (PUA)
F-SecureTrojan.TR/Patched.Ren.Gen
ZillyaTrojan.AgentAGen.Win32.24248
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Cerbu.173465 (B)
IkarusTrojan.Patched
GoogleDetected
AviraTR/Patched.Ren.Gen
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Script/Phonzy.B!ml
ArcabitTrojan.Cerbu.D2A599
GDataGen:Variant.Cerbu.173465
VaristW32/S-9bdefeb6!Eldorado
Acronissuspicious
ALYacGen:Variant.Cerbu.173465
MAXmalware (ai score=89)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CJU23
RisingTrojan.Generic@AI.100 (RDML:J/P7jw03E5sXnzQWhXe5eQ)
SentinelOneStatic AI – Malicious PE
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.98c113
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment