Malware

How to remove “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 7FA9F452790B19201375.mlw
path: /opt/CAPEv2/storage/binaries/a8b4979b4f54f2934b6b6d6cbb094fcaf2a5dfb5c43fe677e2c69a6f6c924d26
crc32: 3DE8D53C
md5: 7fa9f452790b192013759e52189480a5
sha1: ec9c266c47cffca34ee305a3bf5927961ecc266c
sha256: a8b4979b4f54f2934b6b6d6cbb094fcaf2a5dfb5c43fe677e2c69a6f6c924d26
sha512: 4614de63c29deb689c22ed79b4b2464c1a0a03a5f8774256acf1804b2e9d88e709f652a46952c336a569f4d906257ac91b56ae69342058ed9754ac994a7fbb82
ssdeep: 384:qTheqsRsjRsjRsjRsjRsjRsjRsjRsjRsjRsjRsjRsjRsjRsjRsjxfjrBIDE045Hw:qYBmmmmmmmmmmmmmmUSA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T147520991229E082FEE6C1137666EC1C6D5AE05E6DD79C03DA8F7E54E2E256C03B5130F
sha3_384: 9b1bac7268183c940e7cfaafca26faa6641d52072bb3c324596916f7fcd24baad898872bea3bbcf25186ecdc27738531
ep_bytes: 5053b899040000b9984440008a1980eb
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.PackedENT.124
MicroWorld-eScanTrojan.Ransom.Poison.B
FireEyeGeneric.mg.7fa9f452790b1920
SkyhighBehavesLike.Win32.Generic.lc
McAfeeGenericRXTL-LJ!7FA9F452790B
MalwarebytesTrojan.Downloader
VIPRETrojan.Ransom.Poison.B
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderTrojan.Ransom.Poison.B
K7GWTrojan ( 0059befd1 )
K7AntiVirusTrojan ( 0059befd1 )
BitDefenderThetaGen:NN.ZevbaF.36792.amW@aKovO2i
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
KasperskyHEUR:Trojan.Win32.VB.gen
NANO-AntivirusTrojan.Win32.VB.juiskq
RisingTrojan.Generic@AI.100 (RDMK:w8elkAxj7zkrDyQfKZI2og)
SophosMal/ExeSax-A
F-SecureTrojan.TR/Crypt.ZPACK.Gen
TrendMicroTROJ_GEN.R03BC0DKD23
Trapminemalicious.high.ml.score
EmsisoftTrojan.Ransom.Poison.B (B)
IkarusVirus.Win32.VB.FEW
MAXmalware (ai score=88)
JiangminTrojan/Generic.bghcg
GoogleDetected
AviraTR/Crypt.ZPACK.Gen
VaristW32/Cerbu.BW.gen!Eldorado
Antiy-AVLGrayWare/Win32.Krap.cku
Kingsoftmalware.kb.a.997
MicrosoftTrojan:Win64/Grandoreiro.psyE!MTB
XcitiumHeur.Packed.MultiPacked@1z141z3
ArcabitTrojan.Ransom.Poison.B
ZoneAlarmHEUR:Trojan.Win32.VB.gen
GDataTrojan.Ransom.Poison.B
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.LJ.R535457
Acronissuspicious
VBA32Malware-Cryptor.General.3
ALYacTrojan.Ransom.Poison.B
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BC0DKD23
TencentTrojan.Win32.VB.kj
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.c47cff
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment