Malware

Application.Agent.EQU (file analysis)

Malware Removal

The Application.Agent.EQU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Agent.EQU virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • CAPE detected the embedded win api malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Application.Agent.EQU?


File Info:

name: AD6C6C91E09B70B02F92.mlw
path: /opt/CAPEv2/storage/binaries/ffc03ae9f69d4b38a00655ccc4ec1e2c8c4646cebe51108bc168f31e444d708d
crc32: 837F9174
md5: ad6c6c91e09b70b02f9218b8ba7dc9f2
sha1: 0451b6fd6656317b8378619e96596641323a81d8
sha256: ffc03ae9f69d4b38a00655ccc4ec1e2c8c4646cebe51108bc168f31e444d708d
sha512: a5d0999c120e93c332df0e948fd76420318c5ffcede1e2fc378720d541b08a288c087b215b278e7d2510bbb197a7ef4fd0bc4308107036fcfac42faa0fe0ebcb
ssdeep: 24576:UKamez39pyrhpcDjtED29u3jVn+nsHdSqstXR6FcQCgPnM6:UKO6teFz43j1WrboM
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19BA5232391D0913EC64614B759316D954AB2A372EB821AB3E33F282DFD064D1FB50B9F
sha3_384: 655bc23a1dc630c294bf18df6ab190f5937cb008c8fb93b829960738afbc15e3990383a9c0329a394b8da430add2ccde
ep_bytes: 558bec81ec800000008b45d80345a02b
timestamp: 2015-05-12 07:15:22

Version Info:

0: [No Data]

Application.Agent.EQU also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.DownloadHelper.2!c
MicroWorld-eScanApplication.Agent.EQU
FireEyeGeneric.mg.ad6c6c91e09b70b0
SkyhighPacked-FKC!AD6C6C91E09B
McAfeePacked-FKC!AD6C6C91E09B
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005410101 )
AlibabaAdWare:Win32/StartSurf.c930392e
K7GWTrojan ( 005410101 )
CrowdStrikewin/malicious_confidence_70% (W)
ArcabitApplication.Agent.EQU
BitDefenderThetaGen:NN.ZexaF.36744.bsW@aaalANmi
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.GMCF
CynetMalicious (score: 100)
APEXMalicious
Kasperskynot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
BitDefenderApplication.Agent.EQU
NANO-AntivirusTrojan.Win32.Vittalia.fjthos
AvastWin32:Adware-gen [Adw]
TencentWin32.AdWare.Startsurf.Cgow
EmsisoftApplication.Agent.EQU (B)
F-SecureHeuristic.HEUR/AGEN.1318594
DrWebTrojan.Vittalia.17867
VIPREApplication.Agent.EQU
Trapminemalicious.high.ml.score
SophosMal/Generic-S
IkarusTrojan.Crypt
JiangminAdWare.DownloadHelper.bxz
VaristW32/Kryptik.DIF.gen!Eldorado
AviraHEUR/AGEN.1318594
Antiy-AVLGrayWare[AdWare]/Win32.DownloadHelper
XcitiumMalCrypt.Indus!@1qrzi1
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
GDataApplication.Agent.EQU
GoogleDetected
AhnLab-V3PUP/Win32.Helper.R241891
ALYacApplication.Agent.EQU
MAXmalware (ai score=77)
VBA32BScope.Adware.DownloadHelper
MalwarebytesAdware.IStartSurf
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexPUA.DownloadHelper!c65mVwjutGA
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GMFB!tr
AVGWin32:Adware-gen [Adw]
DeepInstinctMALICIOUS

How to remove Application.Agent.EQU?

Application.Agent.EQU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment