Malware

What is “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 29AD84964F239588DF64.mlw
path: /opt/CAPEv2/storage/binaries/c4480d27a66c5905a37f05be70f6b1352aba6ed8954ab55cb40bf92fb47a0b5e
crc32: 555582CE
md5: 29ad84964f239588df64be48f9bfe3af
sha1: 5509cc0ac4860aa577a147546db6f65ac2c278c0
sha256: c4480d27a66c5905a37f05be70f6b1352aba6ed8954ab55cb40bf92fb47a0b5e
sha512: a070801d472e168ba32c50be8665237385f2eb27affcf390d3cb86a93f136751a1192f7f29a731d7ef38abc4cd6b2225f9480ca374a646cd486e80269b1e9b34
ssdeep: 384:XKb3s8Q9KfGs5JPjjjjjjjjjjjjjj/MCDE045HB555:X6cxGJPjjjjjjjjjjjjjj/JA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C5031973454DADA9E34C77B3229EA782443C23A6B451BD6C7F1668E41F3868C87407EB
sha3_384: 444ab0b1655329bc27067cd67b52ebaf5230c597ba248bc76961e54c54ec879e50a4f4960182ad32f016ff30981ab9a4
ep_bytes: 65a39016e8170acca1653fc4b3195341
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.173465
FireEyeGeneric.mg.29ad84964f239588
SkyhighBehavesLike.Win32.Generic.pz
ALYacGen:Variant.Cerbu.173465
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Cerbu.173465
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Cerbu.D2A599
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
CynetMalicious (score: 100)
APEXMalicious
SophosMal/Generic-S
F-SecureTrojan.TR/Patched.Ren.Gen
VIPREGen:Variant.Cerbu.173465
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Cerbu.173465 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/S-9bdefeb6!Eldorado
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=84)
Kingsoftmalware.kb.a.998
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataGen:Variant.Cerbu.173465
GoogleDetected
Acronissuspicious
BitDefenderThetaGen:NN.ZexaE.36792.cmY@aihbphl
DeepInstinctMALICIOUS
MalwarebytesMachineLearning/Anomalous.95%
TrendMicro-HouseCallTROJ_GEN.R03BH0CK623
RisingTrojan.Generic@AI.100 (RDML:82+OiyQ1h6R7mjgMV2HYWQ)
IkarusTrojan.Patched
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.ac4860
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment