Malware

Application.Generic.3085092 malicious file

Malware Removal

The Application.Generic.3085092 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3085092 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Application.Generic.3085092?


File Info:

name: 054FF41985ACEC6455F1.mlw
path: /opt/CAPEv2/storage/binaries/f7f1d9135f28a6ad94c7e9c7d08356ee081a8dafa6780572b0a75e66823fc3d8
crc32: 6C6D6FA2
md5: 054ff41985acec6455f154e33ec62b89
sha1: 1f4ea337ef967c2eca92d6aad88fa1c46914b4f7
sha256: f7f1d9135f28a6ad94c7e9c7d08356ee081a8dafa6780572b0a75e66823fc3d8
sha512: 018939a64a35ef3feff4ef137e694d4de999c74712cae10e414ac2296526bbe8728470b1959c42d0f0677e8e3f16cfa22fb64f35f4238b5f12f31da8e3437951
ssdeep: 49152:AUABW4gdFZ9rzwIhbRe+EsvhLqavgCtYUbjA2UKX6khoIl:A+4gbvwCQdmLqgkUaKqao
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1CBB5335064C93A94C75AEA323B86BD540254AAF33B405710FF8833914D62DFFEA75A73
sha3_384: 90606445da555705c69529b4463af1eb7f82209c98a516b71891563f42fa310407cc3cadcd485fb92f3edb39b243b3a6
ep_bytes: bb0000000083ec0489142489ff21cf58
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Application.Generic.3085092 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
MicroWorld-eScanApplication.Generic.3085092
FireEyeGeneric.mg.054ff41985acec64
McAfeeGenericRXRB-NS!054FF41985AC
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0057ffc71 )
K7GWTrojan ( 0057ffc71 )
Cybereasonmalicious.7ef967
BitDefenderThetaGen:NN.ZexaF.34084.XmW@auJi83j
CyrenW32/Kryptik.FGA.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Pacex.Gen
KasperskyVHO:Trojan.Win32.Copak.gen
BitDefenderApplication.Generic.3085092
AvastWin32:CoinminerX-gen [Trj]
TencentTrojan.Win32.Coinminer.yi
Ad-AwareApplication.Generic.3085092
SophosGeneric ML PUA (PUA)
ComodoPacked.Win32.MUPX.Gen@24tbus
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
EmsisoftApplication.Generic.3085092 (B)
IkarusTrojan.Win32.Injector
GDataApplication.Generic.3085092
JiangminTrojan.Copak.cmp
eGambitUnsafe.AI_Score_99%
AviraTR/Crypt.ULPM.Gen
MAXmalware (ai score=74)
Antiy-AVLTrojan/Generic.ASBOL.C68F
MicrosoftTrojan:Win32/Injector.RAQ!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Reputation.C4303120
ALYacApplication.Generic.3085092
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt
APEXMalicious
RisingTrojan.Injector!1.C865 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Application.Generic.3085092?

Application.Generic.3085092 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment