Malware

How to remove “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 98BA14337A82E23BD428.mlw
path: /opt/CAPEv2/storage/binaries/1e28d0342ac1f0526c11309ccb856d653f07102898a06ed6e48baafe05343e5a
crc32: BE6FBEF7
md5: 98ba14337a82e23bd428dfb55348d7f7
sha1: 913745b67521aab4de1b23691a4bb3722acc261e
sha256: 1e28d0342ac1f0526c11309ccb856d653f07102898a06ed6e48baafe05343e5a
sha512: bd96fd705987f168d06a086d7f1dd34b125c6bab4a9c14b4fef8a20e8949657ef404f107fc958194cc7d5060b90b6cacac25ddd9e4386613ce1956836a613833
ssdeep: 192:B83LzjEU2xLvj4zzi7KMTbEhMyrK9US5MqDE045HQVmmmm:YnjhwrAaKibEhm9l5rDE045H
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DF5209F2862D676AFF4F48776BD530D4328432B586A1720E95F69D6C3BBCB644604D03
sha3_384: d2eec184c867a75417425a1d808ebe86beecd31bbfe87c65c4d56389d287b5c2c76e3bc48b152e8ac52a8d7d4c0f04d7
ep_bytes: 5053b899040000b9984440008a1980eb
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Ransom.Poison.B
SkyhighBehavesLike.Win32.Generic.lc
McAfeeGenericRXTL-LJ!98BA14337A82
MalwarebytesTrojan.Downloader
VIPRETrojan.Ransom.Poison.B
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0059befd1 )
BitDefenderTrojan.Ransom.Poison.B
K7GWTrojan ( 0059befd1 )
Cybereasonmalicious.67521a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
CynetMalicious (score: 100)
APEXMalicious
KasperskyHEUR:P2P-Worm.Win32.Convagent.gen
NANO-AntivirusTrojan.Win32.VB.juiskq
RisingTrojan.Generic@AI.100 (RDMK:m6/osgEkublIYq2Kct7/DQ)
SophosMal/ExeSax-A
F-SecureTrojan.TR/Crypt.ZPACK.Gen
DrWebTrojan.PackedENT.124
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.98ba14337a82e23b
EmsisoftTrojan.Ransom.Poison.B (B)
IkarusVirus.Win32.VB.FEW
JiangminTrojan/Generic.bghcg
VaristW32/Agent.FJT.gen!Eldorado
AviraTR/Crypt.ZPACK.Gen
Antiy-AVLGrayWare/Win32.Krap.cku
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Win64/Grandoreiro.psyE!MTB
XcitiumHeur.Packed.MultiPacked@1z141z3
ArcabitTrojan.Ransom.Poison.B
ZoneAlarmHEUR:P2P-Worm.Win32.Convagent.gen
GDataTrojan.Ransom.Poison.B
GoogleDetected
AhnLab-V3Trojan/Win.LJ.R535457
Acronissuspicious
BitDefenderThetaAI:Packer.44249F861F
ALYacTrojan.Ransom.Poison.B
MAXmalware (ai score=86)
DeepInstinctMALICIOUS
VBA32Malware-Cryptor.General.3
Cylanceunsafe
TencentTrojan.Win32.VB.xhae
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment