Malware

How to remove “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 9F312DD3498A4F80FB6A.mlw
path: /opt/CAPEv2/storage/binaries/c861fa88dc95bf168f3c58d2a1c157ede0751f353089186f02f46b218faf857f
crc32: 5A901CE7
md5: 9f312dd3498a4f80fb6ae199c31d40cb
sha1: c352ca7160053dc52c66455f459c7a09237548c6
sha256: c861fa88dc95bf168f3c58d2a1c157ede0751f353089186f02f46b218faf857f
sha512: 768724f19bf4738c159e6354ef0caa545fffce8b892cdc7077997c65d5fc35c8b8cc8fa6949ebd8ef1c8986dd37ea0d944a4264739aaa995fba56eba69bc8475
ssdeep: 192:9oKabynuEGdSuD7p2q4XXXXXXXXXX/ZcZcZcZsPhRiQjvD/8blqDE045HQX///:9oKqynKp2qBKvDnDE045H
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FA032C23278DE478EF9EC3B36250D792A047F129EF694640492FE1F61E2812D6B60F17
sha3_384: 8f31b68ead7e0b5f19450491076c78f5a9eb4d6cb868daa3b309fdfb228945510683744986e7e5ae51260ca259feb356
ep_bytes: a700612ffc4fe9f7ebadd75acc0eb2a4
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.173465
SkyhighBehavesLike.Win32.Generic.pz
ALYacGen:Variant.Cerbu.173465
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Cerbu.173465
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Cerbu.173465
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Cerbu.D2A599
BitDefenderThetaGen:NN.ZexaE.36792.cmY@aihbphl
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
RisingTrojan.Generic@AI.100 (RDML:JE1JaZxGbF7MjCuEQ4C7DA)
SophosGeneric ML PUA (PUA)
GoogleDetected
F-SecureTrojan.TR/Patched.Ren.Gen
ZillyaTrojan.AgentAGen.Win32.21838
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.9f312dd3498a4f80
EmsisoftGen:Variant.Cerbu.173465 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/S-9bdefeb6!Eldorado
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=87)
Kingsoftmalware.kb.a.998
MicrosoftTrojan:Script/Phonzy.B!ml
GDataGen:Variant.Cerbu.173465
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!9F312DD3498A
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CJU23
TencentTrojan.Win32.Patched.kd
IkarusTrojan.Patched
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.160053
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment