Malware

How to remove “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: C875E579FFF7EE67F76B.mlw
path: /opt/CAPEv2/storage/binaries/4a5b3150ffcf31ee9efe003a266f18ec73d65e44c279f154c6fd1636210bd8e3
crc32: E4CCB86F
md5: c875e579fff7ee67f76beb424c506f19
sha1: 80906d546c33bdaa5d67de6604a8cbe72450c229
sha256: 4a5b3150ffcf31ee9efe003a266f18ec73d65e44c279f154c6fd1636210bd8e3
sha512: a99ed5e4f2c9551f440c4460f84ba67bada89b7808691f5fbb7654861e2312bfbb6fddfccf88d154d2ec82246db1fa2df9945f19bff2b27ffa8ee21e014e0abb
ssdeep: 192:fgG3a/K7YT91eTecYfoMSG9u9wmgrlHHHHHH+RvRvRvRvRvRvRvRnY/glfUWDJqt:IQaC7OUYfRV9rrCUWDADE045H
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1560329B022BCA022FB4DC3F3421BF4E77196B5705D2219444ADED54D4FA9A88339AE4F
sha3_384: 8e6f51e491ce9a794709f90d2874b7219cd7fb5d0440c697f940a0e60f9230467cacc8c7bcfc29b6d0b00373e629885a
ep_bytes: 79ee930f2696db4ea8c03257dbd0489e
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.465768
FireEyeGeneric.mg.c875e579fff7ee67
SkyhighBehavesLike.Win32.Generic.pz
McAfeeArtemis!C875E579FFF7
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Zusy.465768
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Zusy.465768
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaE.36792.cmY@aihbphl
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
CynetMalicious (score: 100)
APEXMalicious
RisingTrojan.Generic@AI.100 (RDML:8JMn3jwDP3lGwYNg+cV2aw)
SophosMal/Generic-S
F-SecureTrojan.TR/Patched.Ren.Gen
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Zusy.465768 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/S-9bdefeb6!Eldorado
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=81)
Kingsoftmalware.kb.a.998
MicrosoftTrojan:Script/Phonzy.B!ml
ArcabitTrojan.Zusy.D71B68
GDataGen:Variant.Zusy.465768
GoogleDetected
Acronissuspicious
ALYacGen:Variant.Zusy.465768
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CK623
TencentTrojan.Win32.Patched.kd
IkarusTrojan.Patched
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.46c33b
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment