Malware

Win32/Agent_AGen.CQD removal guide

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 0BC01E82B2015EDEC465.mlw
path: /opt/CAPEv2/storage/binaries/98b4177c2eb9b96aea0386dc0160042ce4f7b4dd0f99ccd7fe1610ae83d51973
crc32: DF2DF3DE
md5: 0bc01e82b2015edec46582a76ac6c74d
sha1: 9bb72518c535c6b5d39cfc3cab3d3b8babc2d5ca
sha256: 98b4177c2eb9b96aea0386dc0160042ce4f7b4dd0f99ccd7fe1610ae83d51973
sha512: 1065539454242d2156f4ca9102a828378847a8b473ba57e1e8cdcb009a481c70e58a03bdcdb7d29fd16d5792a014642e6286ca8db7784963a2da3b04a182745f
ssdeep: 384:rVJ4Y4BEagEYP+gW4qzmrGP5DE045H0ggg:rVJ4Y4BsP1DwVZA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16D037D3352EC88A2FEAC0AF716F81CD364D97555DF96A499CC0FE2AC0D6651343A1B07
sha3_384: 7eafaad60ca700f4f2674432aa134ee60681581dfa8da4c54ea6f0b7bfb2d232532edb1af65de5e12f8a6497043a79b5
ep_bytes: a59fe8e896c64d721f272fe7a3989020
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
SkyhighBehavesLike.Win32.Generic.pz
McAfeeArtemis!0BC01E82B201
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Cerbu.173465
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Cerbu.173465
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
CynetMalicious (score: 100)
AlibabaTrojan:Win32/Generic.0baa0962
MicroWorld-eScanGen:Variant.Cerbu.173465
RisingTrojan.Generic@AI.100 (RDML:EDsTbqbQ7QSkmO4mUgwSLA)
SophosMal/Generic-S
F-SecureTrojan.TR/Patched.Ren.Gen
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.0bc01e82b2015ede
EmsisoftGen:Variant.Cerbu.173465 (B)
IkarusTrojan.Patched
VaristW32/S-9bdefeb6!Eldorado
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.Wacatac
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
ArcabitTrojan.Cerbu.D2A599
GDataGen:Variant.Cerbu.173465
GoogleDetected
Acronissuspicious
BitDefenderThetaGen:NN.ZexaE.36792.cmY@aihbphl
ALYacGen:Variant.Cerbu.173465
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R03BH0CK623
TencentTrojan.Win32.Patched.kd
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.8c535c
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment