Malware

How to remove “Application.Generic.3043039”?

Malware Removal

The Application.Generic.3043039 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3043039 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Application.Generic.3043039?


File Info:

name: 88D5D2EE0A8C6AB6A402.mlw
path: /opt/CAPEv2/storage/binaries/ef47402515131a21efd53ee1cee7893041759ec05824e778f969f2af4cffe8c2
crc32: 8812CC8C
md5: 88d5d2ee0a8c6ab6a402fee340e8b601
sha1: 1aa227f4ae54b1144210786e1ce43fc0be949449
sha256: ef47402515131a21efd53ee1cee7893041759ec05824e778f969f2af4cffe8c2
sha512: 024f1e850e49a0e443479b99cc97e92e542ddb0da6da0de2e3c5c2b61e1d75b60533fbbd396d5e9e6f657470b97762df1f1c6cac9d3cd84ccc2ee1287530276c
ssdeep: 12288:B+cKJtG3ZDw4pvt3OvHz01TsnYBgYUJm1TuDePLegueEdi4s3Ow3:sQJ9pvt3OfTkEDsiBhrct
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1A305332624A9BCABFF7E553411BDECF3F5AEE1D49A13610704240D0E71E1A32A16B339
sha3_384: f26ad917b55f18b0eb926fd0373840dea28d9ff30e0e1e7fff7b706b53fda3a1d2047df7dddf5f955dac20264940b8b0
ep_bytes: bf000000005681ea62959e4d81c0b3b5
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Application.Generic.3043039 also known as:

BkavW32.AIDetect.malware2
LionicRiskware.Win32.BitCoinMiner.1!c
Elasticmalicious (high confidence)
MicroWorld-eScanApplication.Generic.3043039
FireEyeApplication.Generic.3043039
ALYacApplication.Generic.3043039
MalwarebytesTrojan.Crypt.UPX
K7AntiVirusTrojan ( 0057ffc71 )
AlibabaMalware:Win32/km_280b22.None
K7GWTrojan ( 005762bf1 )
Cybereasonmalicious.4ae54b
BitDefenderThetaGen:NN.ZexaF.34182.XmW@aarfJBd
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HITO
APEXMalicious
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderApplication.Generic.3043039
AvastWin32:CoinminerX-gen [Trj]
TencentTrojan.Win32.Coinminer.yi
SophosMal/Generic-R + Mal/TibsPak
ComodoPacked.Win32.MUPX.Gen@24tbus
DrWebTrojan.Packed2.43250
VIPREPacker.NSAnti.Gen (v)
TrendMicroTROJ_GEN.R002C0DJ221
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
EmsisoftApplication.Generic.3043039 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.bbkz
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Generic.ASBOL.C68D
GridinsoftRansom.Win32.Miner.sa
MicrosoftTrojan:Win32/Injector.RAQ!MTB
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
GDataApplication.Generic.3043039
AhnLab-V3Trojan/Win.Generic.R438031
VBA32Trojan.Packed
MAXmalware (ai score=71)
TrendMicro-HouseCallTROJ_GEN.R002C0DJ221
RisingTrojan.Kryptik!1.D12D (CLOUD)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Application.Generic.3043039?

Application.Generic.3043039 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment