Malware

Application.Generic.1848631 (file analysis)

Malware Removal

The Application.Generic.1848631 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.1848631 virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Application.Generic.1848631?


File Info:

crc32: 16CA7E80
md5: 0dfc894356c42f2d15141b5b90478830
name: 0DFC894356C42F2D15141B5B90478830.mlw
sha1: 934670398a655c3ac88a4ce52d97d86c7ac52e43
sha256: a2a2be9718dc09503486d26c0de837f6ae9355d920487b0937aa06ec34f92669
sha512: d16adbbb9d9694ce9f7c6acafb43186f1e425fd8695b6c105c93694532c12c54510bdae29b62374c6aed95990002c07f6c54b973cc9f62d357d2ddae274c5629
ssdeep: 1536:kpgpHzb9dZVX9fHMvG0D3XJX/IcBV1JPMAj:SgXdZt9P6D3XJAiJPMM
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright:
FileVersion: 4.1.8.179
ProductName:
ProductVersion:
FileDescription: Quincey Setup
OriginalFilename: quincey.exe
Translation: 0x0000 0x04e4

Application.Generic.1848631 also known as:

Elasticmalicious (high confidence)
McAfeeArtemis!0DFC894356C4
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/Runner.bf2d0e97
Cybereasonmalicious.356c42
CyrenW32/Dotdo.E.gen!Eldorado
SymantecPUA.Gen.2
ESET-NOD32a variant of NSIS/Adware.Runner.B
APEXMalicious
AvastNSIS:AdwareX-gen [Adw]
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Agent.gen
BitDefenderApplication.Generic.1848631
NANO-AntivirusTrojan.Nsis.Dotdo.eyvfyx
MicroWorld-eScanApplication.Generic.1848631
TencentWin32.Trojan.Agent.Kqe
Ad-AwareApplication.Generic.1848631
SophosGeneric PUA JD (PUA)
ComodoApplicUnwnt@#g9etap4tc945
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PII21
McAfee-GW-EditionBehavesLike.Win32.AdwareDotDo.pm
FireEyeApplication.Generic.1848631
EmsisoftApplication.Generic.1848631 (B)
AviraHEUR/AGEN.1127437
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataApplication.Generic.1848631
VBA32Trojan.Agent
MAXmalware (ai score=70)
MalwarebytesAdware.DotDo.Generic
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PII21
RisingAdware.Dotdo/NSIS!1.B0DB (CLASSIC)
FortinetNSIS/Agent.GU!tr
AVGNSIS:AdwareX-gen [Adw]

How to remove Application.Generic.1848631?

Application.Generic.1848631 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment