Malware

Should I remove “Application.Agent.DHK”?

Malware Removal

The Application.Agent.DHK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Agent.DHK virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Application.Agent.DHK?


File Info:

name: C14701578E10CD869457.mlw
path: /opt/CAPEv2/storage/binaries/2eab44a71261ac1501a5ef502949bc5359eb090bef6316fc852c36173b971865
crc32: 40067ADB
md5: c14701578e10cd86945750c4f1f3057e
sha1: cd1047e99f5fcef76ca76d54bce38acbc132a03c
sha256: 2eab44a71261ac1501a5ef502949bc5359eb090bef6316fc852c36173b971865
sha512: 7117aacdea542891670af087cde3f7f0eaf7161a0c8a1c693727cb75164469b2e6a1fcfd729b328c69cdd143683b9174a2b308847400c99b071b72795c496f9a
ssdeep: 24576:Cs/jRUhycJt70UGVDzU5zre++TdL88akk+x26Cw+G3sLZUuYfb:C89UhZJl073U8dQ4Tx26Cw+9Uuq
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T186C5F0CAA14B8099C8F156B89B33D3F95B6D6C271960C89722C47E3B357E2427B17B13
sha3_384: 4a87f87b6f539b66ee625bfaa6269b8fa1d1f9d3a25fcf4713c4907672f6b5daae3aa8572dead55a968fb486103a2de9
ep_bytes: e853230000e97ffeffff83ec0cdd1424
timestamp: 2016-03-16 02:17:51

Version Info:

ProductVersion: 2.3.5.7
FileVersion: 2.3.5.7
InternalName: SAMOATFEITNIL.EXE
CompanyName: ©Ntotanewetep hisoriitut niysit
LegalCopyright: ©Ntotanewetep hisoriitut niysit
ProductName: SAMOATFEITNIL
OriginalFilename: samoatfeitnil.exe
Translation: 0x0409 0x04e4

Application.Agent.DHK also known as:

BkavW32.Common.150B2A69
LionicAdware.Win32.StartSurf.2!c
tehtrisGeneric.Malware
CynetMalicious (score: 99)
FireEyeGeneric.mg.c14701578e10cd86
SkyhighBehavesLike.Win32.Rootkit.vt
ALYacApplication.Agent.DHK
Cylanceunsafe
ZillyaTool.Agent.Win32.25619
SangforTrojan.Win32.Save.a
CrowdStrikewin/grayware_confidence_70% (D)
AlibabaAdWare:Win32/Kryptik.dc2d61b4
K7GWTrojan ( 0053b81d1 )
K7AntiVirusTrojan ( 0053b81d1 )
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.GJAJ
APEXMalicious
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderApplication.Agent.DHK
NANO-AntivirusTrojan.Win32.Kryptik.fgmign
MicroWorld-eScanApplication.Agent.DHK
AvastWin32:Adware-gen [Adw]
TencentMalware.Win32.Gencirc.10ba24bb
EmsisoftApplication.Agent.DHK (B)
F-SecureHeuristic.HEUR/AGEN.1313457
DrWebTrojan.Vittalia.17914
VIPREApplication.Agent.DHK
TrendMicroTROJ_GEN.R002C0PB224
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.esc
VaristW32/Kryptik.CVO.gen!Eldorado
AviraHEUR/AGEN.1313457
Antiy-AVLGrayWare[AdWare]/Win32.StartSurf
Kingsoftmalware.kb.a.1000
MicrosoftProgram:Win32/Unwaders.C!rfn
XcitiumApplication.Win32.Dlhelper.GI@8159ae
ArcabitApplication.Agent.DHK
ViRobotAdware.Agent.2680832
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Generic
GDataApplication.Agent.DHK
GoogleDetected
AhnLab-V3PUP/Win32.DlHelper.R234110
McAfeePacked-FKC!C14701578E10
MAXmalware (ai score=100)
VBA32Trojan.Vittalia
MalwarebytesCrypt.Trojan.Malicious.DDS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PB224
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!sI4kzp5CFoc
IkarusPUA.Win32.Prepscram
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CFAU!tr
BitDefenderThetaGen:NN.ZexaF.36802.Jw0@ae4HYVki
AVGWin32:Adware-gen [Adw]
Cybereasonmalicious.78e10c
DeepInstinctMALICIOUS
alibabacloudAdWare:Win/StartSurf.gen

How to remove Application.Agent.DHK?

Application.Agent.DHK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment