Malware

How to remove “Application.Generic.3398757”?

Malware Removal

The Application.Generic.3398757 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3398757 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • CAPE detected the embedded pe malware family
  • Detects Bochs through the presence of a registry key
  • Enumerates physical drives
  • Attempted to write directly to a physical drive
  • Attempts to modify proxy settings
  • Attempts to modify browser security settings
  • Touches a file containing cookies, possibly for information gathering
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Application.Generic.3398757?


File Info:

name: 29D9D888F6D577313839.mlw
path: /opt/CAPEv2/storage/binaries/4a399b592453c0a52985f974a486643454380faf1ac60605b2b5ce5844c1f634
crc32: 7ACE113F
md5: 29d9d888f6d57731383982390f44a22a
sha1: 56516e71f7e772410a9f67e669e6a62d9e9bddc2
sha256: 4a399b592453c0a52985f974a486643454380faf1ac60605b2b5ce5844c1f634
sha512: c034324b40c1a7d6aa08eb0f66c84d77818c3920b423fd05612e26ba8204f2a88f724d15c5284203d922e93692931b43713e2fb3b366e58f3f3f51f0bb417385
ssdeep: 196608:WgrHCX4iSAMF82mbMbUItw950gVn1GtCdfzMP5/Ky3syA:Wg+X4SQQIERVn1GtChzMh/KIA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18E9633077787D0B2D1368BB155025A942CFBED086E7CCBC3DA853D54AAB21D8943A4EF
sha3_384: fa1862073b979d43582b5108a6443d06a27d8065a6db3c28675e83bbbcdde94a2a0514ddce40c68d3422add277dcd4ff
ep_bytes: 558bec6aff6870c4410068c095410064
timestamp: 2012-12-31 00:38:51

Version Info:

FileDescription: 360驱动大师纯净版
Translation: 0x0804 0x03a8

Application.Generic.3398757 also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.Generic.2!c
DrWebTrojan.Siggen19.46087
MicroWorld-eScanApplication.Generic.3398757
FireEyeApplication.Generic.3398757
SkyhighBehavesLike.Win32.Dropper.rc
McAfeeArtemis!29D9D888F6D5
Cylanceunsafe
SangforPUP.Win32.Agent.Vygi
CrowdStrikewin/grayware_confidence_90% (D)
K7GWAdware ( 00589e9a1 )
K7AntiVirusAdware ( 00589e9a1 )
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Qihoo360.O potentially unwanted
BitDefenderApplication.Generic.3398757
AvastWin32:MiscX-gen [PUP]
EmsisoftApplication.Generic.3398757 (B)
VIPREApplication.Generic.3398757
SophosGeneric Reputation PUA (PUA)
IkarusTrojan.Win32.Farfli
GDataApplication.Generic.3398757
VaristW32/ABApplication.MKPF-7678
XcitiumApplicUnwnt@#25irdw9jiejp3
ArcabitApplication.Generic.D33DC65
MicrosoftTrojan:Win32/Wacatac.A!ml
CynetMalicious (score: 100)
VBA32Riskware.Qihoo
ALYacApplication.Generic.3398757
MAXmalware (ai score=79)
MalwarebytesGeneric.Malware/Suspicious
RisingPUA.Ludashi!8.17698 (CLOUD)
AVGWin32:MiscX-gen [PUP]
Cybereasonmalicious.1f7e77
DeepInstinctMALICIOUS

How to remove Application.Generic.3398757?

Application.Generic.3398757 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment