Malware

About “Application.Agent.CVI” infection

Malware Removal

The Application.Agent.CVI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Agent.CVI virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs

How to determine Application.Agent.CVI?


File Info:

crc32: C464A120
md5: 0b7e15aded77b30a80cafdde435a1bac
name: 0B7E15ADED77B30A80CAFDDE435A1BAC.mlw
sha1: 4703425553ecd06a2bafb1b548ee578af49d518e
sha256: 2c590a9aed07402019365551aa1ad04072174f0812c66f6056731b87dab9ea40
sha512: f7f62c16d27daab62d776baaa97150189dc95587a38a04ca260ae030236ca4479d7e701b04508130cf782623e17a00ee59f3d6792262f672e7111290a0c51c0e
ssdeep: 12288:7H8lnLZBxTHnOs6q4yaU2W+Mg2bCsC/x0c/QMAVXQEBj:ox7xTHnOs6q4ycMdbCseeco1xpBj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Hobem Software 2011-2017 All Rights Reserved
InternalName: Detoga
FileVersion: 3.1.41.81
CompanyName: Hobem Software
LegalTrademarks:
ProductName: Kikakebeg Taniteheb 73
ProductVersion: 3.3.21.33
FileDescription: Nimeni Fosehare
OriginalFilename: Detoga.exe

Application.Agent.CVI also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 005393151 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacApplication.Agent.CVI
CylanceUnsafe
ZillyaTool.Agent.Win32.24790
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/DealPly.f99fd95a
K7GWAdware ( 005393151 )
Cybereasonmalicious.ded77b
CyrenW32/DealPly.U.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.TF potentially unwanted
APEXMalicious
AvastWin32:DealPly-AJ [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Agent.gen
BitDefenderApplication.Agent.CVI
NANO-AntivirusRiskware.Win32.DealPly.feifaf
MicroWorld-eScanApplication.Agent.CVI
TencentMalware.Win32.Gencirc.10b413bd
Ad-AwareApplication.Agent.CVI
SophosDealPly Updater (PUA)
BitDefenderThetaAI:Packer.6A060B4D19
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.0b7e15aded77b30a
EmsisoftApplication.Agent.CVI (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.iupy
AviraHEUR/AGEN.1125473
Antiy-AVLTrojan/Generic.ASMalwS.26A01FA
MicrosoftTrojan:Win32/Wacatac.A!ml
SUPERAntiSpywarePUP.DealPly/Variant
GDataApplication.Agent.CVI
AhnLab-V3PUP/Win32.DealPly.C2457036
Acronissuspicious
McAfeeGenericRXAA-AA!0B7E15ADED77
MAXmalware (ai score=99)
VBA32Adware.DealPly
MalwarebytesPUP.Optional.WinYahoo
PandaTrj/Genetic.gen
RisingAdware.DealPly!1.AA42 (CLASSIC)
IkarusPUA.DealPly
FortinetW32/Agen.9714!tr
AVGWin32:DealPly-AJ [Adw]
Paloaltogeneric.ml

How to remove Application.Agent.CVI?

Application.Agent.CVI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment