Malware

How to remove “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: 98C6B38A269C52695EF0.mlw
path: /opt/CAPEv2/storage/binaries/494885d3d3a50ee26fa17d56a4c3c057cc99f1c4a5a7f78228f9c6e0126022d0
crc32: 18FF22B3
md5: 98c6b38a269c52695ef09d9ec145ad89
sha1: 9039ddafb01127076f41bc6e6a73828bd4764bb8
sha256: 494885d3d3a50ee26fa17d56a4c3c057cc99f1c4a5a7f78228f9c6e0126022d0
sha512: 6435454e606adf2d0fd7af0aa80d6eb9e3404af4cf2b3c590470f448510fbbbb7c0513933222154f2e7f6d12997e2c96ee4ccd237250b0f8c5a75475c47fe52a
ssdeep: 384:RBdy66IEzFTXTMlvbCBa3DE045HFL/L/L/L/L:X0667XTMlvbU8A/bbbb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A4528DB183DC8C75FA5D48F74FBA1AD345A4362D65A07944040EDC9E0FBE261AAA231F
sha3_384: 15e569a4f23ac7397673d67e5fda81f42c4c1ce86a17d634fdf145e8f4401a5ab05d5dfd32a4d654009c9818a26e0c10
ep_bytes: 5053b899040000b9984440008a1980eb
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
DrWebTrojan.PackedENT.124
MicroWorld-eScanTrojan.Ransom.Poison.B
FireEyeGeneric.mg.98c6b38a269c5269
CAT-QuickHealTrojan.Grandoreiro
SkyhighBehavesLike.Win32.Generic.lc
ALYacTrojan.Ransom.Poison.B
MalwarebytesTrojan.Downloader
ZillyaTrojan.AgentAGen.Win32.30446
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0059befd1 )
K7GWTrojan ( 0059befd1 )
Cybereasonmalicious.fb0112
BitDefenderThetaGen:NN.ZexaF.36608.amW@aKovO2i
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:P2P-Worm.Win32.Convagent.gen
BitDefenderTrojan.Ransom.Poison.B
NANO-AntivirusTrojan.Win32.VB.juiskq
AvastWin32:Evo-gen [Trj]
SophosMal/ExeSax-A
F-SecureTrojan.TR/Crypt.ZPACK.Gen
VIPRETrojan.Ransom.Poison.B
TrendMicroTROJ_GEN.R03BC0DLM23
Trapminemalicious.high.ml.score
EmsisoftTrojan.Ransom.Poison.B (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.bghcg
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=88)
Antiy-AVLGrayWare/Win32.Krap.cku
XcitiumHeur.Packed.MultiPacked@1z141z3
ArcabitTrojan.Ransom.Poison.B
ZoneAlarmHEUR:P2P-Worm.Win32.Convagent.gen
GDataTrojan.Ransom.Poison.B
GoogleDetected
AhnLab-V3Trojan/Win.LJ.R535457
DeepInstinctMALICIOUS
McAfeeGenericRXTL-LJ!98C6B38A269C
TACHYONWorm/W32.Convagent.14336.DG
VBA32Malware-Cryptor.General.3
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BC0DLM23
TencentTrojan.Win32.VB.kn
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment