Malware

What is “Application.Agent.IVL”?

Malware Removal

The Application.Agent.IVL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Agent.IVL virus can do?

  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Application.Agent.IVL?


File Info:

name: 542FF4F308BCAE93288D.mlw
path: /opt/CAPEv2/storage/binaries/0ed016b29cd3e8f68cc105cea478639d704773c082f73a8454233349f08937a7
crc32: 31E62F16
md5: 542ff4f308bcae93288d3d8b0f7e61f5
sha1: ce759107895f7693b826fd852a1df536745d7f8b
sha256: 0ed016b29cd3e8f68cc105cea478639d704773c082f73a8454233349f08937a7
sha512: 61007f42b2913e27bfebdb89f4b01d863a5f7698513191663d9170500f58c2cbb729d0f27d76a7a385fafc053b189ae0ead2caa3f6fa34ff4c8d917b394393f1
ssdeep: 12288:BjSON17GqC/92gx2J2hALX+pd167QhEQO:tLNBGq69Vxhh4E6EhE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E9F48D23E3E18877D1731A749C5BC2B89C26BE112D38758A3BE81D0D6F3969139393D6
sha3_384: ec079682aec53eb7e53b0702985bb6654ae36d0591d88026f2e3e8382ee8e3a75c3944f006cfb5c0dfb2d58f7a422c8a
ep_bytes: 00000000000000000000000000000000
timestamp: 2008-07-23 15:21:46

Version Info:

0: [No Data]

Application.Agent.IVL also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.FakeAV.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanApplication.Agent.IVL
FireEyeGeneric.mg.542ff4f308bcae93
McAfeeArtemis!542FF4F308BC
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00577e621 )
AlibabaTrojan:Win32/Banker.44c
K7GWTrojan ( 00577e621 )
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW32/S-6462508e!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/FakeAlert.T
TrendMicro-HouseCallTROJ_FAKEAV.SMNA
BitDefenderApplication.Agent.IVL
AvastWin32:Trojan-gen
Ad-AwareApplication.Agent.IVL
SophosMal/Generic-S
ComodoTrojWare.Win32.Spy.Agent.CY@8rfvdc
TrendMicroTROJ_FAKEAV.SMNA
McAfee-GW-EditionBehavesLike.Win32.Fake.bt
EmsisoftApplication.Agent.IVL (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.FakeAV.Q
AviraTR/Dldr.Delphi.Gen
MAXmalware (ai score=76)
GridinsoftRansom.Win32.Sabsik.sa
ViRobotTrojan.Win32.Z.Fakeav.728576.N
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C3352154
Acronissuspicious
ALYacApplication.Agent.IVL
TACHYONTrojan/W32.FakeAV.728576
MalwarebytesTrojan.Banker
APEXMalicious
RisingTrojan.FakeAlert!8.56B (CLOUD)
YandexTrojan.GenAsa!miVNfz8AUWI
IkarusTrojan.Delf
eGambitUnsafe.AI_Score_99%
FortinetW32/FAKEAV.Q!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.308bca
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.74416580.susgen

How to remove Application.Agent.IVL?

Application.Agent.IVL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment