Malware

What is “Application.Generic.3566257”?

Malware Removal

The Application.Generic.3566257 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.3566257 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Application.Generic.3566257?


File Info:

name: BB0FB1B7CB1D3DF976CC.mlw
path: /opt/CAPEv2/storage/binaries/2491f60ea59250386dd325a8def18131b59165a8d7afec7d84e7ebbf90955336
crc32: 516419BE
md5: bb0fb1b7cb1d3df976ccf23b6bec8c62
sha1: e5a8c37054e81eaec2c5457de71883b3e1350497
sha256: 2491f60ea59250386dd325a8def18131b59165a8d7afec7d84e7ebbf90955336
sha512: 3880a0341cee6aab88e2ddcd37aa82a7bac83089f9dcc5e2dd81c70fcb911f4f75a9878d0a8865b0ddeae9ccbc4fb8f2b38eb661fba0b6fa56e9e9e170e8f92c
ssdeep: 24576:9sbkCF+kqaW7wRK3LNLuZCkJ83eCw4QTP90cOfiH0pJ4SC6D0Ovo/RW:wF+3aRK3LNgIeH4cOaUpJ+v/A
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T186653335B480EC73DE66167B8E1FF73ED6B1A22A4132631717A42C457C4188A8E477BE
sha3_384: 96498224dd81ea464dccb58cfba8ca8cce60eb5e259d53f2dd54c53f3bc05e5de1cece1928be6ad63fe733351f8a2a92
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2014-03-22 07:23:01

Version Info:

CompanyName: 快屏网络科技有限公司
FileDescription: 桔子日历安装程序
FileVersion: V1.0
InternalName: $Name
LegalCopyright: Copyright (C) 2014快屏网络
LegalTrademarks: 快屏网络
ProductName: 桔子日历
ProductVersion: 1.0.0.0
Translation: 0x0804 0x03a8

Application.Generic.3566257 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
ClamAVWin.Trojan.15173305-1
CAT-QuickHealTrojan.MauvaiseRI.S5245166
ALYacApplication.Generic.3566257
VIPREApplication.Generic.3566257
SangforTrojan.Win32.Save.a
BitDefenderApplication.Generic.3566257
CrowdStrikewin/grayware_confidence_70% (D)
VirITTrojan.Win32.KillFiles.BQFE
ESET-NOD32a variant of Win32/Packed.NSISmod.A suspicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:HEUR:AdWare.NSIS.Xpyn.heur
NANO-AntivirusTrojan.Win32.Pincav.dtlemb
MicroWorld-eScanApplication.Generic.3566257
RisingMalware.NSISMod!1.DBC4 (CLASSIC)
SophosGeneric ML PUA (PUA)
DrWebTrojan.KillFiles.28526
ZillyaAdware.Xpyn.Win32.1048
FireEyeGeneric.mg.bb0fb1b7cb1d3df9
EmsisoftApplication.Generic.3566257 (B)
SentinelOneStatic AI – Malicious PE
VaristW32/Xpyn.A.gen!Eldorado
MAXmalware (ai score=73)
Antiy-AVLGrayWare[AdWare]/Win32.PackedNsisMod.a
Kingsoftmalware.kb.a.764
MicrosoftProgram:Win32/Wacapew.C!ml
ArcabitApplication.Generic.D366AB1
ZoneAlarmnot-a-virus:HEUR:AdWare.NSIS.Xpyn.heur
GDataApplication.Generic.3566257
GoogleDetected
DeepInstinctMALICIOUS
VBA32Adware.NSIS.Xpyn
MalwarebytesPUP.Optional.ChinAd.DDS
TencentBackdoor.Win32.Poison.pb
YandexTrojan.GenAsa!hrZneoTQ9ng
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]

How to remove Application.Generic.3566257?

Application.Generic.3566257 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment