Malware

About “Win32/Agent_AGen.CQD” infection

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: B3A7C07E25065F13C8DE.mlw
path: /opt/CAPEv2/storage/binaries/1067fa33ffc6395ef1c48209216406262da0f9093891a03025167e2a4334927b
crc32: 81F2BE3D
md5: b3a7c07e25065f13c8de20b9fff066d2
sha1: 491f2bc881570477e50aae3aedf67ad04915aa55
sha256: 1067fa33ffc6395ef1c48209216406262da0f9093891a03025167e2a4334927b
sha512: b12dc69fa01843e1d9aeca347cb29a315e098d248c73d7651225f93c93a5c949c785471678f07884b7fb273dfa8dfd17327d856f794b17c27d9ee9ad3d30005a
ssdeep: 768:755QHCqCqCqCqCqCqCqCqCqCqCqCqCqCqCQA:755Qillllllllllllll9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B8034CA311BD6422D31DA2FF9AD1CA89E05E65D03D87891606EDF36F1BACF8115E430B
sha3_384: ac6def32b24c651968c9b63f467c41a9236c39a3986575737dc2b26a1b0475e0175ab8038431fe59e8fb98d94df5a908
ep_bytes: 52007d25fc17e9198dfa765183c91196
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Zusy.465768
FireEyeGeneric.mg.b3a7c07e25065f13
SkyhighBehavesLike.Win32.Generic.pz
ALYacGen:Variant.Zusy.465768
Cylanceunsafe
VIPREGen:Variant.Zusy.465768
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Zusy.465768
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.881570
BitDefenderThetaGen:NN.ZexaE.36792.cmY@aihbphl
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
RisingTrojan.Generic@AI.100 (RDML:OD7h7Y7y12qPbx7rAwr36A)
EmsisoftGen:Variant.Zusy.465768 (B)
F-SecureTrojan.TR/Patched.Ren.Gen
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=83)
GoogleDetected
AviraTR/Patched.Ren.Gen
VaristW32/S-9bdefeb6!Eldorado
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D71B68
GDataGen:Variant.Zusy.465768
CynetMalicious (score: 100)
Acronissuspicious
DeepInstinctMALICIOUS
MalwarebytesMachineLearning/Anomalous.97%
TrendMicro-HouseCallTROJ_GEN.R03BH0CK623
TencentTrojan.Win32.Patched.kd
IkarusTrojan.Patched
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment