Crack

Application.HackTool.AQN removal guide

Malware Removal

The Application.HackTool.AQN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.HackTool.AQN virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • A process created a hidden window
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality

How to determine Application.HackTool.AQN?


File Info:

name: 419D4FD7CECDCAC3965A.mlw
path: /opt/CAPEv2/storage/binaries/034c30d8b659c9c2a61af2eacc158771314299726bf2f251438f05420700e83b
crc32: 326DD548
md5: 419d4fd7cecdcac3965acee3d8e5c148
sha1: 4896794437649d15c1aa8efb307fdd97e73818f1
sha256: 034c30d8b659c9c2a61af2eacc158771314299726bf2f251438f05420700e83b
sha512: a3ff8218d17c07c4cc720c5eaade7338c587ca967ba766d17337958d0a5ffa161c6385c495be5c3f0b8b24f731b772a57753b87df389a9b7ea133facd4c050f3
ssdeep: 3072://H6sgMmtW5outAxU+++++++fhzFh/H6sgMmtW5outAxU+++++++d:nHlgMmU5oSAxphXHlgMmU5oSAxz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T190A3010AE5C69B0FD07981B71AD7A52F4911A12918341F32E5CDF3BA1F07E4D948EB8E
sha3_384: a48425b1f092f9b74ad8b385bd4d425ab54c69cd387f689c976ecf1ed9ef09b85056753d6261bec8d409e184b117366c
ep_bytes: 60be155041008dbeebbffeff5789e58d
timestamp: 2016-05-27 14:05:04

Version Info:

0: [No Data]

Application.HackTool.AQN also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanApplication.HackTool.AQN
FireEyeGeneric.mg.419d4fd7cecdcac3
McAfeeGenericRXAA-FA!419D4FD7CECD
MalwarebytesTrojan.Shutdown.UPX
ZillyaTool.Agent.Win32.78763
SangforTrojan.Win32.Tiggre.rfn
CrowdStrikewin/malicious_confidence_80% (W)
K7GWUnwanted-Program ( 004b976a1 )
K7AntiVirusUnwanted-Program ( 004b976a1 )
VirITTrojan.Win32.Dnldr23.DJQB
CyrenW32/Trojan.CYS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32BAT/HostsChanger.C potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002H0CL821
Paloaltogeneric.ml
ClamAVWin.Malware.Coinminer-9854817-0
BitDefenderApplication.HackTool.AQN
NANO-AntivirusTrojan.Win32.Agent.eguykl
AvastFileRepMetagen [Malware]
Ad-AwareApplication.HackTool.AQN
EmsisoftTrojan.FileCoder (A)
DrWebTrojan.Hosts.48142
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.cc
SophosGeneric PUA EI (PUA)
APEXMalicious
GDataApplication.HackTool.AQN
JiangminPSWTool.Python.l
MAXmalware (ai score=77)
Antiy-AVLTrojan/Generic.ASMalwS.18F9E05
ArcabitApplication.HackTool.AQN
MicrosoftTrojan:Win32/Ditertag.A
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4222527
VBA32Trojan.Downloader
ALYacApplication.HackTool.AQN
CylanceUnsafe
YandexPUA.HackTool!5AP5XOBW9cY
SentinelOneStatic AI – Malicious PE
FortinetPossibleThreat.PALLAS.H
AVGFileRepMetagen [Malware]
Cybereasonmalicious.7cecdc
PandaTrj/CI.A

How to remove Application.HackTool.AQN?

Application.HackTool.AQN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment