Malware

What is “Application.DealAgent.AXG”?

Malware Removal

The Application.DealAgent.AXG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.DealAgent.AXG virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Application.DealAgent.AXG?


File Info:

crc32: E00A13CD
md5: c0e8eb5dcc07cd809038380d5c2f84a3
name: C0E8EB5DCC07CD809038380D5C2F84A3.mlw
sha1: 705cdaeb9be1080310b6b8198d71312ed9602c73
sha256: 2c8fd7b7235e029cae1974b29ee4e53818697758d3c93a4f56b489dcff7c9858
sha512: 11c76a8a0f313bd4403d72dbe3a82c5b767b23cb8829bd5ea9c2c417d14e5ff18759b1a33639e698e68522bcf7d90149541a31fe0eb002933401d953858788b5
ssdeep: 24576:kdOwFIfRCrc5mCVWNYsaoWZSvfYWDrFle2PjrUGB5TVv1I52xEotV8imFs6tkeY:kcVRCY5mS7siZSIWNlLIGB5TVv1PWnVY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Prog file
FileVersion: 3.2.1.0
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: Tedu
ProductVersion: 2.3.1
FileDescription: Tedu Setup
Translation: 0x0000 0x04b0

Application.DealAgent.AXG also known as:

DrWebTrojan.InstallCore.3436
CynetMalicious (score: 100)
ALYacApplication.DealAgent.AXG
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/DealPly.484609c5
Cybereasonmalicious.dcc07c
SymantecPUA.Gen.2
ESET-NOD32Win32/InstallCore.Gen.A potentially unwanted
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:AdWare.Win32.DealPly.dkgdb
BitDefenderApplication.DealAgent.AXG
NANO-AntivirusVirus.InnoSetup.Gen.ccng
MicroWorld-eScanApplication.DealAgent.AXG
Ad-AwareApplication.DealAgent.AXG
SophosInnoMod (PUA)
ComodoMalware@#s0ndzc5wucm2
FireEyeGeneric.mg.c0e8eb5dcc07cd80
EmsisoftApplication.DealAgent.AXG (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.DealPly.dkgdb
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitApplication.DealAgent.AXG
GDataWin32.Application.InstallCore.LR@gen
MAXmalware (ai score=73)
VBA32Malware-Cryptor.2LA.gen
MalwarebytesPUP.Optional.InstallCore
PandaPUP/RnkBend
RisingAdware.InstallCore!1.AB2C (CLASSIC)
FortinetAdware/DealPly
AVGWin32:Adware-gen [Adw]

How to remove Application.DealAgent.AXG?

Application.DealAgent.AXG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment