Malware

How to remove “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: A14A1F8247128616DE45.mlw
path: /opt/CAPEv2/storage/binaries/0200447bb6e250ca37c92d751af1d5c6aebb98534702509b49a7963cb606c9e3
crc32: EB2F4E7D
md5: a14a1f8247128616de4514dda540d436
sha1: ab8f7657f44a8638d699f9d110490db539f6f57e
sha256: 0200447bb6e250ca37c92d751af1d5c6aebb98534702509b49a7963cb606c9e3
sha512: e0a9110fefbc3aed48f147cab791300967b8d0c3348a8078520a5ea7be57b93159919bdadd5831f04ad3986a29b3dec911dba3e6fb5349968e0dcb3a4dbc2796
ssdeep: 384:3VOzwratFqMc9KK0OOOOO3xxxxxxAPKQ4DDvDE045HaZZZZ:3VGwrau3KK0OOOOO3xxxxxxSKRDD7A
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17D038ED0789D1DD7F3DD33FB1125CAE62020F2258E28A2459B1FD5A5EF35106404AB9B
sha3_384: f8d5134b1acd35593d213482a516803da9bf644f462444e6c43ab73ba5db15a7554203287994245f943ca35e6fda3188
ep_bytes: 21eaa8025a0308eb6144dca30d401c45
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Zusy.465768
FireEyeGeneric.mg.a14a1f8247128616
CAT-QuickHealTrojan.IGENERIC
SkyhighBehavesLike.Win32.Generic.pz
ALYacGen:Variant.Zusy.465768
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Zusy.465768
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Zusy.465768
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaCO.36792.cmY@aihbphl
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
RisingTrojan.Generic@AI.100 (RDML:SNQcIGcNlg09ITx/8tJ+Xw)
SophosGeneric ML PUA (PUA)
F-SecureTrojan.TR/Patched.Ren.Gen
ZillyaTrojan.AgentAGen.Win32.20831
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Zusy.465768 (B)
IkarusTrojan.Patched
GoogleDetected
AviraTR/Patched.Ren.Gen
VaristW32/S-9bdefeb6!Eldorado
Kingsoftmalware.kb.a.997
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
ArcabitTrojan.Zusy.D71B68
GDataGen:Variant.Zusy.465768
CynetMalicious (score: 100)
Acronissuspicious
MAXmalware (ai score=83)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CJV23
TencentTrojan.Win32.Patched.kd
SentinelOneStatic AI – Malicious PE
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.7f44a8
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment