Malware

How to remove “Win32/Agent_AGen.CQD”?

Malware Removal

The Win32/Agent_AGen.CQD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.CQD virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.CQD?


File Info:

name: D3FC123947A674E7B4A4.mlw
path: /opt/CAPEv2/storage/binaries/79b03be2be940e02f1f142da2f367d3327f8f7a684b20e2cd912ae231953b86a
crc32: D677D190
md5: d3fc123947a674e7b4a48e97b388227c
sha1: 19844bf6060cc35d33bf8ef6c601d2be593256c5
sha256: 79b03be2be940e02f1f142da2f367d3327f8f7a684b20e2cd912ae231953b86a
sha512: 7481c250c94297da75e33cacea70232240623ce7a5f81584bb3ede52198b7a8fc95cd2a4bc4816187d78c0cd39ab3315cef9128488485901159365fbf28cdb90
ssdeep: 384:hVNnA4ldSYTKlFWbbr444441kkkkkSEGqv2xRDE045H:hVNnA4lLTKlFWbbr44444CGvA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BF033BA2187CFA27D69DC7FB01FB0AD3356127289D524EC5C90BC798DF3641A139261B
sha3_384: 54aeb44b1ce971460b734c68acad8e940ac1192ce589c23ce049fcb7a0f344a55bff1b7d6b19c8c7b115bdcafedc3b3a
ep_bytes: 419fd4cc511bb9721cd755131aa9f49c
timestamp: 2007-07-24 01:52:49

Version Info:

0: [No Data]

Win32/Agent_AGen.CQD also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.465768
FireEyeGeneric.mg.d3fc123947a674e7
SkyhighBehavesLike.Win32.Generic.pz
ALYacGen:Variant.Zusy.465768
MalwarebytesMachineLearning/Anomalous.100%
VIPREGen:Variant.Zusy.465768
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Zusy.465768
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.CQD
APEXMalicious
RisingTrojan.Generic@AI.100 (RDML:c77xY6mOmcZ85UqJfRUuQQ)
SophosGeneric ML PUA (PUA)
F-SecureTrojan.TR/Patched.Ren.Gen
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Zusy.465768 (B)
IkarusTrojan.Patched
MAXmalware (ai score=89)
GoogleDetected
AviraTR/Patched.Ren.Gen
VaristW32/S-9bdefeb6!Eldorado
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
ArcabitTrojan.Zusy.D71B68
GDataGen:Variant.Zusy.465768
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!D3FC123947A6
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CJU23
TencentTrojan.Win32.Patched.kd
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.C40A!tr
BitDefenderThetaGen:NN.ZexaE.36792.cmY@aihbphl
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.6060cc
AvastWin32:Evo-gen [Trj]

How to remove Win32/Agent_AGen.CQD?

Win32/Agent_AGen.CQD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment