Malware

Application.Generic.3041067 (file analysis)

Malware Removal

The Application.Generic.3041067 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3041067 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Application.Generic.3041067?


File Info:

name: E7744C26E0FC12F8E4C6.mlw
path: /opt/CAPEv2/storage/binaries/0c5f280bd5038ee4b6b94339f7a6d8882385186419ebf9d4277493f02fc0ce27
crc32: F632E3D0
md5: e7744c26e0fc12f8e4c6d9bcafccf302
sha1: 926d0d0f557ce0a53a2354de7724f1e878ff8e75
sha256: 0c5f280bd5038ee4b6b94339f7a6d8882385186419ebf9d4277493f02fc0ce27
sha512: ec7c0a4f2cb92dd279ebea37839dd99f9da4b1901c9035253b1736cf2f793569379c99b5582bee4d6323ebaf6b3874976397aa52ea44d4eb3b6abbaab51d56cc
ssdeep: 12288:ONbeaVTIxTXax9FLU3vBpWYiW8Hz3svwVC9yq3dHroWKCXAIKJbw8yO5/v0PShgW:O1eHTqxjUZ09W8zs43UHAbd79kq26cq
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T12905239FA6301546F75DDF323189E283DDE4648E8A9742DE36C130FA6EEB0211BE6474
sha3_384: 5325d57833f7f284a407547d28e0dfc315f7d223c2ec80858db78b509bd5d215b624983a4776ec6833f004eb48e39b23
ep_bytes: 68000000008b1c2483c4045209ff478b
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Application.Generic.3041067 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
MicroWorld-eScanApplication.Generic.3041067
FireEyeGeneric.mg.e7744c26e0fc12f8
McAfeeGenericRXAA-FA!E7744C26E0FC
CylanceUnsafe
ZillyaTrojan.Copak.Win32.135938
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058c5ff1 )
AlibabaMalware:Win32/km_280b22.None
K7GWTrojan ( 005762bf1 )
Cybereasonmalicious.f557ce
BitDefenderThetaGen:NN.ZexaF.34182.XmW@au0!V!b
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Pacex.Gen
TrendMicro-HouseCallTROJ_GEN.R002C0DJ221
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderApplication.Generic.3041067
AvastWin32:CoinminerX-gen [Trj]
TencentTrojan.Win32.Coinminer.yi
SophosMal/Generic-R + Mal/HckPk-A
ComodoPacked.Win32.MUPX.Gen@24tbus
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DJ221
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
EmsisoftApplication.Generic.3041067 (B)
IkarusTrojan.Win32.Injector
AviraTR/Crypt.ULPM.Gen
MAXmalware (ai score=75)
Antiy-AVLTrojan/Generic.ASBOL.C68E
MicrosoftTrojan:Win32/Injector.RAQ!MTB
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
GDataApplication.Generic.3041067
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.R370878
VBA32Trojan.Packed
ALYacApplication.Generic.3041067
MalwarebytesTrojan.Crypt
APEXMalicious
RisingTrojan.Kryptik!1.D238 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Application.Generic.3041067?

Application.Generic.3041067 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment