Malware

Win32/Agent_AGen.CQD removal guide

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 9E24DA837F86E03ED821.mlw
path: /opt/CAPEv2/storage/binaries/38f3d3e2a540825e39aef77cdfb64863882260522eb268eb24ed2b71258c3ed4
crc32: AAD913ED
md5: 9e24da837f86e03ed821c83dfde67bc6
sha1: f5bb311f44b0d6fc48b5a29d72d1b1e4bd251ada
sha256: 38f3d3e2a540825e39aef77cdfb64863882260522eb268eb24ed2b71258c3ed4
sha512: 0a2b9a4021582395718ec5d7f94b172ebb65a9d8c6bce1888525e1c1d1f3da33d6c8cbb5e47c69e0fa963245ab71ea4328d770db08728e49695184d321f6a430
ssdeep: 384:tV/Sygx3r4pbKLwwwwwkfPTDE045HZnnnn:tVVgWpbkwwwwwAA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5037C3520BC90FAFB0E9EFB0DAA08DDA9E035461284094E845F5A868F9F75542F0F47
sha3_384: a12f17b075c7fb884130ed5e79544fa4a804145cefb772fe3747d46af209fb5beb645bb4c77c0ea27a520c2a28bcf2d1
ep_bytes: a4bcc80a66e23a1d856a75bcaa893940
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.173465
SkyhighBehavesLike.Win32.Generic.pz
McAfeeArtemis!9E24DA837F86
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Cerbu.173465
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Cerbu.173465
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.f44b0d
BitDefenderThetaGen:NN.ZexaE.36792.cmY@aihbphl
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
AlibabaTrojan:Win32/Generic.0baa0962
RisingTrojan.Generic@AI.100 (RDML:BBSqz+a74csvs7GpCA2RMw)
SophosMal/Generic-S
F-SecureTrojan.TR/Patched.Ren.Gen
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.9e24da837f86e03e
EmsisoftGen:Variant.Cerbu.173465 (B)
IkarusTrojan.Patched
GoogleDetected
AviraTR/Patched.Ren.Gen
VaristW32/S-9bdefeb6!Eldorado
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Win32/Caynamer.A!ml
ArcabitTrojan.Cerbu.D2A599
GDataGen:Variant.Cerbu.173465
CynetMalicious (score: 100)
Acronissuspicious
ALYacGen:Variant.Cerbu.173465
MAXmalware (ai score=81)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CK623
TencentTrojan.Win32.Patched.kd
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment