Malware

Application.Generic.3528542 removal instruction

Malware Removal

The Application.Generic.3528542 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3528542 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Application.Generic.3528542?


File Info:

name: B14C5BE865FF2BDAB019.mlw
path: /opt/CAPEv2/storage/binaries/59c7cf582e9b64f20b80798808b68c23a59bf2816e14918ed773967666b4935f
crc32: 4FC2A746
md5: b14c5be865ff2bdab019c486503593ba
sha1: 5ab7c52b1eb34fdc53f9206f17d3ec939d497599
sha256: 59c7cf582e9b64f20b80798808b68c23a59bf2816e14918ed773967666b4935f
sha512: c35d390419744630bc545b21a16b66c00c894ed135a4cf17179d8a6d3b5427dc5647fe6543e02bf1f84bcf71665570f01bcc21c4de1fc5a2bbef341d4913ed93
ssdeep: 98304:CssAdQ7j6RZ25QPrjeYQYeRrHtEKzpCKjNzQ:J1gjE25QeNEKzpN0
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T196F51322B5D68072C0E239729D6EF37AD63D7CAA033791AB3BC43E215D74541676A323
sha3_384: 80a554828567420f7771fbfd2d48f718a9fc86d5003b18d94bd82d3722a4812b21169e063161c0e799931ce62802579b
ep_bytes: e8dec20000e989feffffcccccccccccc
timestamp: 2012-02-04 22:43:24

Version Info:

FileDescription:
FileVersion: 3, 3, 9, 0
CompiledScript: AutoIt v3 Script: 3, 3, 9, 0
Translation: 0x0809 0x04b0

Application.Generic.3528542 also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Autoit.1!c
Elasticmalicious (high confidence)
MicroWorld-eScanApplication.Generic.3528542
SkyhighBehavesLike.Win32.PUP.wc
McAfeeArtemis!B14C5BE865FF
Cylanceunsafe
SangforRiskware.Win32.HackKMS.Vb7w
AlibabaRiskWare:Win32/HackKMS.5fda583a
ArcabitApplication.Generic.D35D75E [many]
SymantecPUA.Gen.2
tehtrisGeneric.Malware
ESET-NOD32multiple detections
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Autoit-6753917-0
Kasperskynot-a-virus:HEUR:RiskTool.Win32.HackKMS.gen
BitDefenderApplication.Generic.3528542
NANO-AntivirusTrojan.Win32.Agent.cyzusr
AvastWin32:Malware-gen
TencentWin32.Risktool.Hackkms.Zwhl
EmsisoftApplication.Generic.3528542 (B)
DrWebTrojan.Siggen5.59949
VIPREApplication.Generic.3528542
TrendMicroTROJ_GEN.R002C0RKG23
SophosMal/AuItInj-B
IkarusTrojan.Win32
WebrootW32.Malware.gen
VaristW32/Trojan.IJBN-1595
Antiy-AVLTrojan[Spy]/Win32.Autoit
XcitiumTrojWare.Win32.Hider.REXR@5364l6
MicrosoftTrojan:Win32/Wacatac.B!ml
ViRobotTrojan.Win32.A.Agent.690283
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.HackKMS.gen
GDataWin32.Trojan.PSE.R2WKDE
GoogleDetected
ALYacApplication.Generic.3528542
VBA32IMWorm.Sohanad
MalwarebytesTrojan.StartPage.AutoIt
TrendMicro-HouseCallTROJ_GEN.R002C0RKG23
SentinelOneStatic AI – Suspicious PE
FortinetRiskware/Application
AVGWin32:Malware-gen
Cybereasonmalicious.b1eb34
DeepInstinctMALICIOUS

How to remove Application.Generic.3528542?

Application.Generic.3528542 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment