Malware

Win32/Agent_AGen.DDZ removal tips

Malware Removal

The Win32/Agent_AGen.DDZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.DDZ virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.DDZ?


File Info:

name: 848778B3EE483F1C461D.mlw
path: /opt/CAPEv2/storage/binaries/b7225212485db13b46744a24b06b8461b855b561e8ec7745e866b3f791e98a45
crc32: A299A470
md5: 848778b3ee483f1c461db0d22fb3b742
sha1: 1c8289c16a723c7f3691adce3bbfeb3603d0055a
sha256: b7225212485db13b46744a24b06b8461b855b561e8ec7745e866b3f791e98a45
sha512: 4ea4bb0be9198d6f55796d97ee4d78761b0d44c491535a7faedff0980efbf88d81539ce0f71838583d0ff25ebb2a5d7d9afb6480cce9226ecf6bfe9714d550dd
ssdeep: 384:dy3gig5MWq2tOwl9kk3vH7mPeuaBU3losjuzZ6UwYRGZqc7PYXxDk7WToRZ:KgigGIO29zHyPP3lLuzZPKq06g7AoRZ
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T120E2C759BE444CFBDA10273880E7D7762B7CB151C6234F62F650B7308A737A1219B26E
sha3_384: 752c17236edb6f36f460b1fd2b8397802dba2a6791b0da8dea1a83309caae1e91e916c57b562dfe140fe1ea63c42d992
ep_bytes: 57565383ec108b5c24248b7424208b7c
timestamp: 2024-02-09 01:37:29

Version Info:

0: [No Data]

Win32/Agent_AGen.DDZ also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.PT.c46@a8Y2@5f
FireEyeGen:Trojan.Heur.PT.c46@a8Y2@5f
SkyhighArtemis!Trojan
McAfeeArtemis!848778B3EE48
Cylanceunsafe
VIPREGen:Trojan.Heur.PT.c46@a8Y2@5f
SangforTrojan.Win32.Agent.V073
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent_AGen.DDZ
KasperskyUDS:Trojan-Dropper.Win32.Agent
BitDefenderGen:Trojan.Heur.PT.c46@a8Y2@5f
AvastTrojanX-gen [Trj]
EmsisoftGen:Trojan.Heur.PT.c46@a8Y2@5f (B)
GDataGen:Trojan.Heur.PT.c46@a8Y2@5f
ArcabitTrojan.Heur.PT.E8C53F
ZoneAlarmUDS:Trojan-Dropper.Win32.Agent
MicrosoftTrojan:Win32/Wacatac.B!ml
BitDefenderThetaAI:Packer.2D7F6F1C1E
ALYacGen:Trojan.Heur.PT.c46@a8Y2@5f
MAXmalware (ai score=84)
RisingTrojan.Agent!8.B1E (TFE:5:SAzrk5ZKOeP)
AVGTrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Win32/Agent_AGen.DDZ?

Win32/Agent_AGen.DDZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment