Malware

Win32/Agent_AGen.CQD removal

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 3CBFE9B604F36AD0E73E.mlw
path: /opt/CAPEv2/storage/binaries/d6a9535389ae9484d5a09c08aaa437db950be5eb9dbb8cfb9134f6dcad057544
crc32: C35B5A46
md5: 3cbfe9b604f36ad0e73ed06d35ce4bd7
sha1: ae08dcd7c3e3ab0a9870effe196a0bfc351b5b91
sha256: d6a9535389ae9484d5a09c08aaa437db950be5eb9dbb8cfb9134f6dcad057544
sha512: 9fa2bfbb1f49add71d44839a88695a7c1b55ea0ec612ab2a787867bd978f0b085587618745957fff216abfc26a58b6b974afd76ed5e432231a443da96a248c77
ssdeep: 192:DsjDqsiVcBZsNiBughXm3WlN2EhcdchACQ10ewFP/qDE045HQ:gjulcBvY3WSEhrBQ10CDE045H
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T109528DB38CAC196AFB4841F7971BD5C344B522143E62086D4C9FD15D2F7C2E91AA538F
sha3_384: 3cd537a29785da684eeaf7a20e270ae8180896b20a9470f56a03670a45f18ef37e9043c2c63bb1d9fd32adbf1b04ea2f
ep_bytes: 5053b899040000b9984440008a1980eb
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
DrWebTrojan.PackedENT.124
CAT-QuickHealTrojan.Grandoreiro
SkyhighBehavesLike.Win32.Generic.lc
ALYacTrojan.Ransom.Poison.B
MalwarebytesTrojan.Downloader
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0059befd1 )
K7GWTrojan ( 0059befd1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.44249F861F
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:P2P-Worm.Win32.Convagent.gen
BitDefenderTrojan.Ransom.Poison.B
NANO-AntivirusTrojan.Win32.VB.juiskq
MicroWorld-eScanTrojan.Ransom.Poison.B
RisingTrojan.Generic@AI.100 (RDMK:FSm+64raOQeuomBZQoK29g)
SophosMal/ExeSax-A
F-SecureTrojan.TR/Crypt.ZPACK.Gen
VIPRETrojan.Ransom.Poison.B
TrendMicroTROJ_GEN.R03BC0DJV23
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.3cbfe9b604f36ad0
EmsisoftTrojan.Ransom.Poison.B (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.bghcg
VaristW32/Agent.FJT.gen!Eldorado
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=82)
Antiy-AVLGrayWare/Win32.Krap.cku
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Win64/Grandoreiro.psyE!MTB
XcitiumHeur.Packed.MultiPacked@1z141z3
ArcabitTrojan.Ransom.Poison.B
ZoneAlarmHEUR:P2P-Worm.Win32.Convagent.gen
GDataTrojan.Ransom.Poison.B
GoogleDetected
AhnLab-V3Trojan/Win.LJ.R535457
Acronissuspicious
McAfeeGenericRXTL-LJ!3CBFE9B604F3
DeepInstinctMALICIOUS
VBA32Malware-Cryptor.General.3
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0DJV23
TencentTrojan.Win32.VB.hh
IkarusVirus.Win32.VB.FEW
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.7c3e3a
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment