Malware

What is “Application.Generic.3524284”?

Malware Removal

The Application.Generic.3524284 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3524284 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Application.Generic.3524284?


File Info:

name: 1E51F78F4FAD9C1C81EC.mlw
path: /opt/CAPEv2/storage/binaries/396be3a238f16ae6f66107f433830e8fc66ca383be30e497c2e2e13d540574f9
crc32: 47AC8AC2
md5: 1e51f78f4fad9c1c81ece906666c36be
sha1: 44c71529ea3c5d4898198a1ac6ad486b441f2df5
sha256: 396be3a238f16ae6f66107f433830e8fc66ca383be30e497c2e2e13d540574f9
sha512: a73bc3408ef6b692203b5af1ad69ca94db03e96d7dbfeafb9be12d55422c4f42997ddb6f06a8c2a736233762da698b52ff3408e1fab92ca7d959d6bad174dfdd
ssdeep: 12288:/rpyLsQCQ4r5BYrLo87rdJLRF7V13bsU:EsY49KXNTL77XgU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DFA423E4F81C4296F0442377475164EF36AAEB9CC8F6CEC01AC1B64B3A678B45706E97
sha3_384: 5ce09d4a90927e4d768797e408d7a98c34d7c594348c4603bcfa249126e8bc7a8b8ba65d9d9c0a74ea22817cf56350a4
ep_bytes: 60be00d051008dbe0040eeff57eb0b90
timestamp: 2011-09-19 12:21:44

Version Info:

FileVersion: 2.1.1.1
FileDescription: 龙卷风2.0
ProductName: 龙卷风2.0
ProductVersion: 2.1.1.1
CompanyName: 龙卷风2.0
LegalCopyright: 此软件仅用于学习交流编程知识, 请勿用于非法用途! 使用本软件则使用者承担一切后果, 否则请删除本软件!
Comments: 龙卷风2.0
Translation: 0x0804 0x04b0

Application.Generic.3524284 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
MicroWorld-eScanApplication.Generic.3524284
FireEyeGeneric.mg.1e51f78f4fad9c1c
SkyhighBehavesLike.Win32.Generic.gc
ALYacApplication.Generic.3524284
MalwarebytesGeneric.Malware.AI.DDS
VIPREApplication.Generic.3524284
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 005848221 )
K7GWAdware ( 005848221 )
CrowdStrikewin/grayware_confidence_60% (D)
BitDefenderThetaGen:NN.ZexaF.36792.DmKfaiKW4ugH
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
BitDefenderApplication.Generic.3524284
AvastWin32:Malware-gen
EmsisoftApplication.Generic.3524284 (B)
DrWebTrojan.DownLoader46.24858
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
JiangminTrojan/PSW.Bjlog.flf
VaristW32/Trojan.IRG.gen!Eldorado
Antiy-AVLTrojan/Win32.FlyStudio.a
Kingsoftmalware.kb.b.879
ArcabitApplication.Generic.D35C6BC
GDataApplication.Generic.3524284
GoogleDetected
McAfeeArtemis!1E51F78F4FAD
MAXmalware (ai score=77)
Cylanceunsafe
SentinelOneStatic AI – Malicious PE
FortinetRiskware/Application
AVGWin32:Malware-gen
Cybereasonmalicious.9ea3c5
DeepInstinctMALICIOUS

How to remove Application.Generic.3524284?

Application.Generic.3524284 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment