Malware

Application.Generic.3026112 malicious file

Malware Removal

The Application.Generic.3026112 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3026112 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Application.Generic.3026112?


File Info:

name: D780745C34EFEB46CA2D.mlw
path: /opt/CAPEv2/storage/binaries/f0047089b0d879c423da03066421187a6a64c7f410435f4f446541977fd2d4ed
crc32: 45B611E5
md5: d780745c34efeb46ca2deee7b30b3b35
sha1: 4c879beec79cf3438f58d85430ceeb12d6a2e2ee
sha256: f0047089b0d879c423da03066421187a6a64c7f410435f4f446541977fd2d4ed
sha512: 58735664e06e8c8b0e7d2609292742b338ca174b35ec004237482f123761747a236472de7cf1934e6a59da9e1cd4100b33cb371d0dd830c2e94f7c1caf31298b
ssdeep: 12288:+cWuqHvaNCUVC8FVm7fbZ+nmhVKkMWOsndmR4anqBKfraFd9:CHYCx8F0Z+nmhgkdOs8mljFd
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18A053327268CB28CF58EA5F64160BB66C4241314DFDC936195C0AFF89AF197EB8344B7
sha3_384: 15c03bf5b52276725f9fbe3c698816ed71fefe09c0ca4870d1ae6a9d288279eb74c35daebdbb4ad1ad98cc244fbce226
ep_bytes: b8000000005689d25f29d289d201d257
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Application.Generic.3026112 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
MicroWorld-eScanApplication.Generic.3026112
FireEyeApplication.Generic.3026112
ALYacApplication.Generic.3026112
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3558084
SangforTrojan.Win32.Gen.MBT
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_280b22.None
K7GWTrojan ( 005762bf1 )
K7AntiVirusTrojan ( 0058c5ff1 )
BitDefenderThetaGen:NN.ZexaF.34182.XmW@a8b1N7m
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HITO
TrendMicro-HouseCallTROJ_GEN.R002C0DJ821
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderApplication.Generic.3026112
AvastWin32:CoinminerX-gen [Trj]
TencentTrojan.Win32.Coinminer.yi
EmsisoftApplication.Generic.3026112 (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DJ821
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
SophosMal/Generic-R + Mal/HckPk-A
IkarusTrojan.Win32.Injector
JiangminRiskTool.BitCoinMiner.aizt
eGambitUnsafe.AI_Score_99%
AviraHEUR/AGEN.1140994
MAXmalware (ai score=71)
Antiy-AVLTrojan/Generic.ASBOL.C689
GridinsoftRansom.Win32.Miner.sa
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GDataApplication.Generic.3026112
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Reputation.C4309050
McAfeeGenericRXAA-AA!D780745C34EF
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt.UPX
APEXMalicious
RisingTrojan.Kryptik!1.D12D (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
PandaTrj/Genetic.gen

How to remove Application.Generic.3026112?

Application.Generic.3026112 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment