Malware

Application.Agent.DDT (file analysis)

Malware Removal

The Application.Agent.DDT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Agent.DDT virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

all.fingersleep.bid
none.coalrate.men

How to determine Application.Agent.DDT?


File Info:

crc32: B6AFBB10
md5: ce1b9ba156b0b8294eee0507c11e3795
name: CE1B9BA156B0B8294EEE0507C11E3795.mlw
sha1: 10acc1b8bb4bfe0b8afbd79ee1783ff924571e35
sha256: 2e4887d9c98a7646025575eaee7e3d9efd3af931aa78a927ed1424f0eaac4bd2
sha512: 40718d619424d0f24cf88cf890993a90a8bcd1289086e95af1ef60347b962e6b0f4bfbe1982f68618aa1d63ca42b2296494e0878a4fe5a4b54ccbbad80545d78
ssdeep: 24576:I+ME9tVkpNVpAAX04EAZUu5dwACiiGq5aRaznDRkl2sq9:I+MEK1XXln/niswznCq9
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Atue
InternalName: ICUDAHATTEKA.EXE
FileVersion: 2.8.2.10
CompanyName: xa9Atue
ProductName: ICUDAHATTEKA
ProductVersion: 2.8.2.10
OriginalFilename: icudahatteka.exe
Translation: 0x0409 0x04e4

Application.Agent.DDT also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053ba2f1 )
LionicAdware.Win32.StartSurf.2!c
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
CynetMalicious (score: 100)
ALYacApplication.Agent.DDT
CylanceUnsafe
ZillyaTool.Agent.Win32.25123
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaAdWare:Win32/StartSurf.427f89b1
K7GWTrojan ( 0053ba2f1 )
Cybereasonmalicious.156b0b
CyrenW32/Kryptik.FDS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJCY
APEXMalicious
AvastWin32:Adware-gen [Adw]
BitDefenderApplication.Agent.DDT
NANO-AntivirusRiskware.Win32.StartSurf.ffsauy
ViRobotAdware.Startsurf.1649152.B
MicroWorld-eScanApplication.Agent.DDT
TencentMalware.Win32.Gencirc.10c9762a
Ad-AwareApplication.Agent.DDT
SophosGeneric PUA BA (PUA)
ComodoTrojWare.Win32.Injector.ZRA@54s8j9
BitDefenderThetaGen:NN.ZexaF.34170.Kr0@aKldvjfi
McAfee-GW-EditionBehavesLike.Win32.Packed.tm
FireEyeGeneric.mg.ce1b9ba156b0b829
EmsisoftApplication.Agent.DDT (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.cfo
AviraTR/Crypt.EPACK.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.2712D11
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataApplication.Agent.DDT
AhnLab-V3PUP/Win32.StartSurf.R232924
Acronissuspicious
McAfeePacked-FKC!CE1B9BA156B0
MAXmalware (ai score=77)
VBA32BScope.Adware.StartSurf
MalwarebytesAdware.DLAssistant.Generic
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PIS21
RisingTrojan.Kryptik!1.B33C (CLASSIC)
IkarusPUA.Win32.Prepscram
FortinetW32/Kryptik.GJAJ!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Application.Agent.DDT?

Application.Agent.DDT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment