Malware

Application.Agent.CTS malicious file

Malware Removal

The Application.Agent.CTS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Agent.CTS virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Application.Agent.CTS?


File Info:

name: F935352F6EC0D1333BE5.mlw
path: /opt/CAPEv2/storage/binaries/25a1223f621fcdf82a509b1975fd908ee4fc73ddec2e69104eaa6396cee12a8b
crc32: FAC49C55
md5: f935352f6ec0d1333be5efb503aa011d
sha1: 672a4663cf98203201c723faaa9b6eeee4c775a0
sha256: 25a1223f621fcdf82a509b1975fd908ee4fc73ddec2e69104eaa6396cee12a8b
sha512: 793fa2f3569cc4324a8c9314924a578d7e60f99d1602c7e86ae386975db64a56bc51721e0749c670ff11c3760b0ead81252c8476e6d0f846ff44d827e7f1a0f3
ssdeep: 24576:sJCxdXgc3jVOT+o2OnPqlvbdjJg5YKR6H1on:OmXgc3hQrlilzZ7u6H1on
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18A950110749F8477E27319342A29E7A6963D79301F605AEF77D81A2D4F382C12B36B27
sha3_384: 55c061f2ee42c2bd8cad1713bb2bf87ad0a3f58e63e89707c36e9eadd81000f39491fbc37b7358d6b6dbc8a2304befe7
ep_bytes: e8ad070000e98efeffffff2528b15d00
timestamp: 2018-05-24 15:04:33

Version Info:

0: [No Data]

Application.Agent.CTS also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
DrWebTrojan.SkypeSpam.11238
MicroWorld-eScanApplication.Agent.CTS
FireEyeGeneric.mg.f935352f6ec0d133
CAT-QuickHealPUA.Sigmal.S2733869
SkyhighBehavesLike.Win32.Generic.tz
ALYacApplication.Agent.CTS
Cylanceunsafe
VIPREApplication.Agent.CTS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00532d0b1 )
AlibabaTrojan:Win32/Kryptik.57a28e80
K7GWTrojan ( 00532d0b1 )
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderThetaGen:NN.ZexaF.36744.7DW@amO8Qsii
VirITTrojan.Win32.SkypeSpam.QQG
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.GHBS
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderApplication.Agent.CTS
NANO-AntivirusTrojan.Win32.SkypeSpam.fcoouh
AvastWin32:StartSurf-C [Adw]
TencentMalware.Win32.Gencirc.10b1024b
EmsisoftApplication.Agent.CTS (B)
F-SecureHeuristic.HEUR/AGEN.1362113
ZillyaTrojan.Generic.Win32.239052
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataApplication.Agent.CTS
JiangminAdWare.SoftPulse.qd
WebrootW32.Adware.Gen
GoogleDetected
AviraHEUR/AGEN.1362113
Antiy-AVLTrojan/Win32.TSGeneric
KingsoftWin32.Trojan.Generic.a
XcitiumApplication.Win32.Prepscram.CARS@7o8biz
ArcabitApplication.Agent.CTS
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftSoftwareBundler:Win32/Prepscram
VaristW32/S-57036aa5!Eldorado
AhnLab-V3PUP/Win32.BundleInstaller.R228971
Acronissuspicious
McAfeeGenericRXFO-YD!F935352F6EC0
MAXmalware (ai score=97)
VBA32Trojan.SkypeSpam
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!8.8 (TFE:5:AzyKZfLDDkF)
YandexTrojan.GenAsa!2T0JII99mz8
IkarusPUA.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GFGF!tr
AVGWin32:StartSurf-C [Adw]
DeepInstinctMALICIOUS

How to remove Application.Agent.CTS?

Application.Agent.CTS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment