Malware

Win32:Agent-AQGZ [Trj] removal guide

Malware Removal

The Win32:Agent-AQGZ [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Agent-AQGZ [Trj] virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Win32:Agent-AQGZ [Trj]?


File Info:

name: 6D55CC357E60637D63CF.mlw
path: /opt/CAPEv2/storage/binaries/5af4c51970ff8b75953ca700372115d5fe3f03bbb23d64f20765ae37537ce234
crc32: F90475CC
md5: 6d55cc357e60637d63cf39fbe6dba44a
sha1: aadcb98f4ee26b737416b495669874c87ed6552f
sha256: 5af4c51970ff8b75953ca700372115d5fe3f03bbb23d64f20765ae37537ce234
sha512: 09cb80c4725247cba260fc71411770b8e136dd81089d8a20bdc551117277512c3e9fc81b88749417c178280ccb12bf88356ca3ae8d29e0900e2b2d0ae26269bf
ssdeep: 196608:mXDjOq+ydOec7l3OPzvJRFAAW7mOGQTW+DrKyOIOEG7d9/s3:mDjOqTdOec7l3UzxmiNU7KyV/3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T167A633156302267AECB337F459262C9DB361BA537679010FBD85B73592BB387CA2430B
sha3_384: 00086c6831db87c1d16689aefcb9046885eb261eed3b31bf72971cc01bfd40b5fafe5e19147890632cf8dca67eb9dd72
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-02-21 19:46:34

Version Info:

0: [No Data]

Win32:Agent-AQGZ [Trj] also known as:

LionicTrojan.Win32.Generic.4!c
DrWebTrojan.Siggen7.2550
McAfeeKeylog-XPCMonitor
CylanceUnsafe
AlibabaTrojan:Win32/Proxy.3a9b9464
BitDefenderThetaGen:NN.ZedlaF.34742.ly4@aqlp!Fii
NANO-AntivirusTrojan.Win32.XPCMonitor.fbzghu
AvastWin32:Agent-AQGZ [Trj]
SophosGeneric PUA KK (PUA)
ComodoSuspicious@#3qt4jeqbbvujd
ZillyaAdware.Linkun.Win32.1796
McAfee-GW-EditionKeylog-XPCMonitor
WebrootSystem.Monitor.Xpcmonitor.Famil
AviraTR/Proxy.Gen
MicrosoftTrojan:Win32/Occamy.C5A
VBA32Adware.Presenoker
APEXMalicious
RisingMalware.Undefined!8.C (CLOUD)
IkarusTrojan.Proxy
FortinetW32/Generic_PUA_JA
AVGWin32:Agent-AQGZ [Trj]

How to remove Win32:Agent-AQGZ [Trj]?

Win32:Agent-AQGZ [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment