Malware

Application.Generic.3085275 removal guide

Malware Removal

The Application.Generic.3085275 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3085275 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Application.Generic.3085275?


File Info:

name: 97C5B4159208F77C2949.mlw
path: /opt/CAPEv2/storage/binaries/2009fa6de28105f2b45698a766ea9f5f7880144d3ab205869aeb7d948a058fcc
crc32: 20167BD2
md5: 97c5b4159208f77c2949ab3c42249b21
sha1: 115d3eb3928e7a28cddc4e5074eb98da2d40e7cd
sha256: 2009fa6de28105f2b45698a766ea9f5f7880144d3ab205869aeb7d948a058fcc
sha512: 2e07c860004fa414c166c1ae3c646af2aff2ae1388fec4f72407359fbb3c0ef5f6d4aac0720ca4f00d1724ccd28e71faf47ebbe8688547a7b470ee73dacf40d3
ssdeep: 24576:AHYV2iFxjBvJMNjVIEKFKB+s7mm7irrmi7PD4:A4TF/vJMN2ER7mmurnDD
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15B0523B59CBBA4EEC9BE12B7FF44F667169B240F9C2D242D155F98084173B29010E7B8
sha3_384: 2b0628035457222b6fe7be1340655fee9a5101df02b1c46d00faf653c7b908374b8b2f7e8e56622ad47af2268a728b27
ep_bytes: 6800000000595781c3634fccdd89f68b
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Application.Generic.3085275 also known as:

BkavW32.AIDetect.malware2
LionicRiskware.Win32.BitCoinMiner.1!c
Elasticmalicious (high confidence)
MicroWorld-eScanApplication.Generic.3085275
FireEyeGeneric.mg.97c5b4159208f77c
McAfeeGenericRXAA-FA!97C5B4159208
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0057ffc71 )
AlibabaMalware:Win32/km_280b22.None
K7GWTrojan ( 005762bf1 )
Cybereasonmalicious.3928e7
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.AUY
APEXMalicious
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.vho
BitDefenderApplication.Generic.3085275
NANO-AntivirusRiskware.Win32.BitCoinMiner.jjncxs
AvastWin32:CoinminerX-gen [Trj]
TencentTrojan.Win32.Coinminer.yi
Ad-AwareApplication.Generic.3085275
EmsisoftApplication.Generic.3085275 (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
DrWebTrojan.Packed2.43250
TrendMicroTROJ_GEN.R002C0DL621
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
SophosMal/Generic-R + Mal/HckPk-A
IkarusTrojan.Win32.Injector
GDataWin32.Application.Coinminer.35EMMS
JiangminTrojan.Generic.hagyo
eGambitUnsafe.AI_Score_89%
AviraTR/Crypt.ULPM.Gen
Antiy-AVLGrayWare/Win32.Kryptik.ffp
GridinsoftRansom.Win32.Gen.sa
MicrosoftTrojan:Win32/Injector.RAQ!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Reputation.C4301861
BitDefenderThetaGen:NN.ZexaF.34114.XmW@ayf56hc
ALYacApplication.Generic.3085275
MAXmalware (ai score=79)
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt.UPX
TrendMicro-HouseCallTROJ_GEN.R002C0DL621
RisingTrojan.Kryptik!1.D238 (CLASSIC)
YandexTrojan.Kryptik!uHxwH1E7ozY
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Application.Generic.3085275?

Application.Generic.3085275 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment