Malware

Win32/Agent_AGen.CQD removal

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: F6C48780D01CCDE0C0B8.mlw
path: /opt/CAPEv2/storage/binaries/96149449c82991595d88a6dcbe59f7bd8ae098568cb8b443d6d85a1ded05e8d1
crc32: E3CC4B7B
md5: f6c48780d01ccde0c0b8c0c0e6481b5e
sha1: 507c0319d5fae9e6737c154fc3926f69389be44f
sha256: 96149449c82991595d88a6dcbe59f7bd8ae098568cb8b443d6d85a1ded05e8d1
sha512: cbc0f1d7b0dec1e974677ad8511f60fb240ded367c486db474a548fdaaad288b0e4551d40b6f896bdfd91ac646a6d7b0f37e73f9742c6aab053625c32014a31a
ssdeep: 384:NVQJY0cVdnz+z+z+zDIIIIIojehqDE045H:NV1nz+z+z+zJ2wA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17C035C73A0BC1A92FE1E0AFB4333BDD68086B1AA2F544D694A527509DF750327F12787
sha3_384: 36d5b05a28a64462d846130522a6b3304e7687bcb9a0957183b552bec2fec868d969ae55ffbc91cb82406798892ffbe6
ep_bytes: 13bcbf0aeded5ba48c7e1a1499650203
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Cerbu.173465
FireEyeGeneric.mg.f6c48780d01ccde0
SkyhighBehavesLike.Win32.Generic.pz
McAfeeArtemis!F6C48780D01C
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Generic.ef0872a7
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.9d5fae
ArcabitTrojan.Cerbu.D2A599
BitDefenderThetaGen:NN.ZexaE.36608.cmY@aihbphl
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.CQD
CynetMalicious (score: 100)
APEXMalicious
BitDefenderGen:Variant.Cerbu.173465
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Patched.kd
EmsisoftGen:Variant.Cerbu.173465 (B)
F-SecureTrojan.TR/Patched.Ren.Gen
VIPREGen:Variant.Cerbu.173465
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
VaristW32/S-9bdefeb6!Eldorado
AviraTR/Patched.Ren.Gen
Kingsoftmalware.kb.a.999
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataGen:Variant.Cerbu.173465
GoogleDetected
Acronissuspicious
ALYacGen:Variant.Cerbu.173465
MAXmalware (ai score=80)
MalwarebytesMachineLearning/Anomalous.100%
TrendMicro-HouseCallTROJ_GEN.R03BH0CLO23
RisingTrojan.Generic@AI.100 (RDML:E+Bn7n6LPPJAmKopCaOmdg)
IkarusTrojan.Patched
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment