Malware

Should I remove “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 01BA01B88C7506FFBD79.mlw
path: /opt/CAPEv2/storage/binaries/2e65a86435b47452c92f15ce3f5fa59cd1e9a9ef7c79d5b045a43e1c3a612077
crc32: 78AA63F3
md5: 01ba01b88c7506ffbd791a41fa0d386d
sha1: cca986137e961d23f7c27f57c5e696eff5cc705f
sha256: 2e65a86435b47452c92f15ce3f5fa59cd1e9a9ef7c79d5b045a43e1c3a612077
sha512: ba94570db2ed405e79ef2ae1243508a7c4f0567923ae3f32bbf041e61648423f7669e42f69045c5eb9530d8c0c051caa8214247d573be2834a8ae2c75e4e75e6
ssdeep: 384:OXxc2K6xUEYxojvNEnEPFFFFFFGZAZAZAZAZAZAZ16AvzHRoDE045H2l5l5l5l5l:OXxc2lxUEYOjvN+kFFFFFFGZAZAZAZA8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15C522BB7F06CF578FF9C4677020F4AE8D8C0B0E4282CEE1C994B969D2E765971522326
sha3_384: 20a01a2a8ed269fe14a861f0ca1bbc2324278d3bb0786e9f11e4f2526936b13420d58f4b21f94493aa7c637c164c5c1b
ep_bytes: 5053b899040000b9984440008a1980eb
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.PackedENT.124
MicroWorld-eScanTrojan.Ransom.Poison.B
FireEyeGeneric.mg.01ba01b88c7506ff
SkyhighBehavesLike.Win32.Generic.lc
McAfeeGenericRXTL-LJ!01BA01B88C75
MalwarebytesTrojan.Downloader
VIPRETrojan.Ransom.Poison.B
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0059befd1 )
K7GWTrojan ( 0059befd1 )
Cybereasonmalicious.37e961
ArcabitTrojan.Ransom.Poison.B
BitDefenderThetaGen:NN.ZevbaF.36792.amW@aKovO2i
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:P2P-Worm.Win32.Convagent.gen
BitDefenderTrojan.Ransom.Poison.B
NANO-AntivirusTrojan.Win32.VB.juiskq
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.VB.xhae
EmsisoftTrojan.Ransom.Poison.B (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen
TrendMicroTROJ_GEN.R03BC0DKF23
Trapminemalicious.high.ml.score
SophosMal/ExeSax-A
IkarusTrojan.Crypt
JiangminTrojan/Generic.bghcg
VaristW32/Cerbu.BW.gen!Eldorado
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=83)
Antiy-AVLGrayWare/Win32.Krap.cku
Kingsoftmalware.kb.a.999
XcitiumHeur.Packed.MultiPacked@1z141z3
MicrosoftTrojan:Win64/Grandoreiro.psyE!MTB
ZoneAlarmHEUR:P2P-Worm.Win32.Convagent.gen
GDataTrojan.Ransom.Poison.B
GoogleDetected
AhnLab-V3Trojan/Win.LJ.R535457
Acronissuspicious
VBA32Malware-Cryptor.General.3
ALYacTrojan.Ransom.Poison.B
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BC0DKF23
RisingTrojan.Generic@AI.100 (RDML:/hJMxJZX/PFN4Aj/knfQRg)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment