Malware

Application.Generic.3043955 removal tips

Malware Removal

The Application.Generic.3043955 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3043955 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Application.Generic.3043955?


File Info:

name: E0DF453E9597A07F02DB.mlw
path: /opt/CAPEv2/storage/binaries/f8e348d4a5aeb42d10275c980e23ae35526eaccea52558e2ca75fc817d94b828
crc32: 2D8321F3
md5: e0df453e9597a07f02db115a0015b246
sha1: 75eb159e26dd32ea40f547694ad7b9e3dc2991eb
sha256: f8e348d4a5aeb42d10275c980e23ae35526eaccea52558e2ca75fc817d94b828
sha512: 1907509344343b7edc7e2db0509afa76b0c26842cb1e8a3bacf25de1a2bfcbbf5773460430dd2552a881902e21e292a2e8564855f4d863f2599f2e5a772d1d66
ssdeep: 12288:DB1VjuVGHg2pWOVULkeNmmn5hYZbm/85fOY9jDpERckoxNEERKvQ7vpVwAb:D0VIfCNmKhYLfHpg2DEbvSqAb
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T12B05237D8AEA606AFF99BC7414C68D3CB8521F0429C6C9367832046DFD5CAC650E6DCB
sha3_384: 589b491ee38912550701b1096499e47a1d84afeedac6b1f6a79e7f4fc51f7e32f8fcaf763ba19df6f2ffb00d25b863c3
ep_bytes: 83ec04c70424000000005e5181e86f36
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Application.Generic.3043955 also known as:

BkavW32.AIDetect.malware2
LionicRiskware.Win32.BitCoinMiner.1!c
Elasticmalicious (high confidence)
MicroWorld-eScanApplication.Generic.3043955
FireEyeApplication.Generic.3043955
McAfeeGenericRXOS-KI!E0DF453E9597
CylanceUnsafe
ZillyaTrojan.Injector.Win32.1237017
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058c5ff1 )
AlibabaMalware:Win32/km_280b22.None
K7GWTrojan ( 005762bf1 )
Cybereasonmalicious.e26dd3
BitDefenderThetaGen:NN.ZexaF.34182.XmW@a4p9k1g
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
TrendMicro-HouseCallTROJ_GEN.R002C0DJ221
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderApplication.Generic.3043955
AvastWin32:CoinminerX-gen [Trj]
TencentTrojan.Win32.Coinminer.yi
EmsisoftApplication.Generic.3043955 (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
DrWebTrojan.Packed2.43250
VIPREPacker.NSAnti.Gen (v)
TrendMicroTROJ_GEN.R002C0DJ221
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
SentinelOneStatic AI – Malicious PE
SophosML/PE-A + Mal/HckPk-A
APEXMalicious
JiangminRiskTool.BitCoinMiner.aiot
AviraTR/Crypt.ULPM.Gen
MAXmalware (ai score=74)
Antiy-AVLTrojan/Generic.ASBOL.C68B
GridinsoftRansom.Win32.Miner.sa
MicrosoftTrojan:Win32/Injector.RAQ!MTB
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
GDataApplication.Generic.3043955
CynetMalicious (score: 100)
VBA32Trojan.Packed
ALYacApplication.Generic.3043955
MalwarebytesTrojan.Crypt
RisingTrojan.Kryptik!1.D238 (CLOUD)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Application.Generic.3043955?

Application.Generic.3043955 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment