Malware

Win32/Agent_AGen.DDZ removal instruction

Malware Removal

The Win32/Agent_AGen.DDZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent_AGen.DDZ virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/Agent_AGen.DDZ?


File Info:

name: 5F73F83DC18E124ADAE9.mlw
path: /opt/CAPEv2/storage/binaries/9bc9531200ab0e5f3b084162946dd1be702e7507058b5df29c9443441adee3b4
crc32: F89E74E4
md5: 5f73f83dc18e124adae9b518453f5533
sha1: ee7701c535c94bbab410ad855dc916cbdd7cb14c
sha256: 9bc9531200ab0e5f3b084162946dd1be702e7507058b5df29c9443441adee3b4
sha512: f43dd2dfbbcbc6fb6760e4f5bceb80d44428f7dc81ad90602916fbc821d5cbe4a0815baee9ba363fe2c97170fcbf10d0e8ca4cae3359247dcd4e2b7b427c14d5
ssdeep: 384:araxV1SuHf6AUZAlckBGmPeuaBU3losjuzZ6UwYRGZqE7PnaZ6WOGDc/RJ5Ri:araLEuyVZGcuPP3lLuzZPKq8SY/P5Ri
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T179E2C6997F444DEBD951173980E7C77B2A7CF180C6234B62F664A7308A337A5218B26F
sha3_384: 7c75026079db25954754b853ad8661e13ad639d020ad8f507b3459c79fd92ab74ecc546eff73b849eef6897958b3892f
ep_bytes: 57565383ec108b5c24248b7424208b7c
timestamp: 2024-02-09 02:22:39

Version Info:

0: [No Data]

Win32/Agent_AGen.DDZ also known as:

MicroWorld-eScanTrojan.GenericKD.71605265
SkyhighBehavesLike.Win32.Injector.nm
McAfeeGenericRXWN-OT!5F73F83DC18E
VIPRETrojan.GenericKD.71605265
SangforSuspicious.Win32.Save.a
AlibabaTrojan:Win32/MalwareX.0462300a
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.DDZ
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Agent.xbksbz
BitDefenderTrojan.GenericKD.71605265
AvastWin32:MalwareX-gen [Trj]
TencentWin32.Trojan.Agent.Qnkl
EmsisoftTrojan.GenericKD.71605265 (B)
F-SecureTrojan.TR/Agent_AGen.ofsir
FireEyeTrojan.GenericKD.71605265
SophosMal/Generic-S
GDataTrojan.GenericKD.71605265
GoogleDetected
AviraTR/Agent_AGen.ofsir
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.Generic.D4449C11
ZoneAlarmTrojan.Win32.Agent.xbksbz
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.R634543
BitDefenderThetaGen:NN.ZedlaF.36744.c46@ai20lDn
PandaTrj/Chgt.AD
RisingTrojan.Agent!8.B1E (TFE:5:tsU7pzyhXBL)
IkarusTrojan.Win32.Agent
FortinetW32/Agent.DDP!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Win32/Agent_AGen.DDZ?

Win32/Agent_AGen.DDZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment