Malware

Application.Generic.1850001 removal instruction

Malware Removal

The Application.Generic.1850001 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.1850001 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Expresses interest in specific running processes
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Russian
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Steals private information from local Internet browsers
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Attempts to modify browser security settings

Related domains:

www.fanqianbb.com

How to determine Application.Generic.1850001?


File Info:

crc32: 026EA684
md5: 40a6727e5254b64b11824283e0f64705
name: fqbb_tgsetup.exe
sha1: 51f3e8a4cbc517e960a69a491a5b3fa054c2322a
sha256: b769b6a58e26b89491065babfe12c91af3e1c1cc633635223a729bf12772abe8
sha512: d5b88137376590198be9d4710a8bfcbe25db922cd09be7eebea464e709243c6cea3bbe3bc4a876ad5b3f6d70df521e8d3c505b7ee8f00ea4e2f6bd3070ebc8bf
ssdeep: 98304:/gwRs99xR2dMFQ7Sch5UIIIPiECM+qO6Qgh4+PvgC1T39X3E7ZnD6aj/NiScbYGx:/g79t2uFalFRC6N//96nBzNyr2e
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright(C) 2011-2017 fanqianbb.com All Rights Reserved.
InternalName: install.exe
FileVersion: 2,1,1,4
CompanyName: fanqianbb.com
ProductName: x5b89x88c5x8fd4x94b1x5b9dx5b9d
ProductVersion: 2,1,1,4
FileDescription: x5b89x88c5x8fd4x94b1x5b9dx5b9d
OriginalFilename: install.exe
Translation: 0x0804 0x04b0

Application.Generic.1850001 also known as:

BkavW32.HfsAdware.8839
CAT-QuickHealTrojan.Yantai
McAfeeArtemis!40A6727E5254
MalwarebytesAdware.ChinAd
VIPREAdware.Agent
SangforMalware
K7AntiVirusAdware ( 00534dfa1 )
BitDefenderApplication.Generic.1850001
K7GWAdware ( 00534dfa1 )
Cybereasonmalicious.e5254b
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
GDataAdware.GenericKD.40148271
Kasperskynot-a-virus:AdWare.Win32.Agent.xxdpbl
AlibabaAdWare:Win32/Bang5mai.eaecbb27
NANO-AntivirusRiskware.Win32.Bang5mai.fehpva
TencentWin32.Trojan.Multiple.Pbpe
Endgamemalicious (high confidence)
EmsisoftApplication.Generic.1850001 (B)
ComodoApplicUnwnt@#3t2ragh7hl9tn
F-SecureHeuristic.HEUR/AGEN.1000597
DrWebTrojan.Crossrider1.61942
ZillyaAdware.Bang5maiCRTD.Win32.11061
McAfee-GW-EditionArtemis
MaxSecureTrojan.Malware.12026346.susgen
FireEyeApplication.Generic.1850001
SophosGeneric PUA JK (PUA)
IkarusPUA.Bang5mai
JiangminAdware.Agent.abkc
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1000597
ArcabitApplication.Generic.D1C3A91
AegisLabAdware.Win32.Agent.2!c
ZoneAlarmnot-a-virus:AdWare.Win32.Agent.xxdpbl
MicrosoftPUA:Win32/Yantai
MAXmalware (ai score=91)
VBA32Adware.Agent
ESET-NOD32a variant of Win32/Adware.Bang5mai.AG
RisingTrojan.Generic@ML.90 (RDMK:zgPOl+9SOh9XNsud+BH3iQ)
FortinetRiskware/Bang5mai
AVGWin32:Adware-gen [Adw]
PandaTrj/CI.A

How to remove Application.Generic.1850001?

Application.Generic.1850001 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment