Malware

Win32/Agent_AGen.CQD removal tips

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: E8B37978A6B3635A6133.mlw
path: /opt/CAPEv2/storage/binaries/4e79c8eb6f44af382d7f80fca17c48ff23229e43e6859b49fe6633dda4e3bed0
crc32: 04A008F9
md5: e8b37978a6b3635a6133d49e7178eafa
sha1: 77b88fa0ec91458f41e18c9604e555edf6982f45
sha256: 4e79c8eb6f44af382d7f80fca17c48ff23229e43e6859b49fe6633dda4e3bed0
sha512: 71da8479409cc7e176d330bb0935c5196a429b6025f409149f8555db32cda364d99016122ef09a35e3f0e476d0c4c7a18884853d99aa4e0398e79d881a65ff99
ssdeep: 384:FFk5NwNodpZZZZZZZZZZZZZZZF2MDE045HX5555:F7N8122AB5555
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17103F8698A8C4BEFFB5D5EBB62317490C9B385E089A2D6044C67C819DF986C727C430B
sha3_384: ecdb50f6fb0475fbcca4d47278b3f5331a086da0d822ccf5c35c5fea1ed29b6a8ec94929d919fd7fbb85a9ccafc26d29
ep_bytes: 20bcc9aced6b5b31eaf5814e9f41552b
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
SkyhighBehavesLike.Win32.Generic.pz
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Cerbu.173465
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Cerbu.173465
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaE.36792.cmY@aihbphl
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Cerbu.173465
RisingTrojan.Generic@AI.100 (RDML:MAB2u2Xx3KjNHDD3el5u0g)
SophosGeneric ML PUA (PUA)
F-SecureTrojan.TR/Patched.Ren.Gen
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.e8b37978a6b3635a
EmsisoftGen:Variant.Cerbu.173465 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/S-9bdefeb6!Eldorado
AviraTR/Patched.Ren.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Cerbu.D2A599
GDataGen:Variant.Cerbu.173465
GoogleDetected
Acronissuspicious
ALYacGen:Variant.Cerbu.173465
MAXmalware (ai score=86)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CK623
TencentTrojan.Win32.Patched.kd
IkarusTrojan.Patched
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.0ec914
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment