Malware

Application.Generic.42206 (B) (file analysis)

Malware Removal

The Application.Generic.42206 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Generic.42206 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A process attempted to delay the analysis task by a long amount of time.
  • Installs itself for autorun at Windows startup

Related domains:

z.whorecord.xyz
a.tomx.xyz
public.windupdates.com

How to determine Application.Generic.42206 (B)?


File Info:

crc32: 65B981F4
md5: f62bdf5840166170cf8c98aa755fe775
name: F62BDF5840166170CF8C98AA755FE775.mlw
sha1: a6aa28b473b057582243a336228f5f3b5074d39b
sha256: 21852a80b89598093f57188c3fd5ffdd21b6b18ddffa9e9421a89adcd07fe4c8
sha512: e0676f38ace255b17e76f0e44554001374127ac0a5f953b31f93a7eefe845e3b42398c62148084e7cb5863130dae2ad19da60e5a14b3e720b43bb611c399ff3c
ssdeep: 3072:F3jVE8DfwzPoCzQECMZ3ztHPdC5OJmkfJPHg:Nj6bz3HTdz9FC5OJTfJHg
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Application.Generic.42206 (B) also known as:

K7AntiVirusAdware ( 004bb0391 )
Elasticmalicious (high confidence)
DrWebAdware.Winad
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericPMF.S20253704
ALYacAdware.WindUpdates
CylanceUnsafe
ZillyaAdware.WinAD.Win32.155
SangforTrojan.Win32.Wacatac.A
AlibabaAdWare:Win32/WinAD.1adb8788
K7GWAdware ( 004bb0391 )
Cybereasonmalicious.840166
CyrenW32/Agent.TVXB-6740
SymantecAdware.WinTaskAd
ESET-NOD32Win32/Adware.WUpd
APEXMalicious
AvastWin32:Adware-gen [Adw]
ClamAVWin.Adware.Prevad-4
Kasperskynot-a-virus:AdWare.Win32.WinAD.ab
BitDefenderApplication.Generic.42206
NANO-AntivirusRiskware.Win32.WinAD.boang
ViRobotTrojan.Win32.Winad.136828
MicroWorld-eScanApplication.Generic.42206
TencentWin32.Adware.Winad.Ebgl
Ad-AwareApplication.Generic.42206
SophosWinAd Installer (PUA)
ComodoApplication.Win32.Adware.WUpd@1wek
BitDefenderThetaGen:NN.ZexaF.34294.imHfa0x8uuji
VIPREWinAD Client
TrendMicroADW_WINAD.N
McAfee-GW-EditionBehavesLike.Win32.Picsys.cc
FireEyeGeneric.mg.f62bdf5840166170
EmsisoftApplication.Generic.42206 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.WinAD.d
WebrootAdware:Win32/Windupdates.A
AviraTR/Dldr.Prevk
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.1F67D
MicrosoftProgram:Win32/Wacapew.C!ml
GDataApplication.Generic.42206
TACHYONTrojan-Clicker/W32.WinAd.180345
AhnLab-V3Malware/Gen.Generic.R426433
Acronissuspicious
McAfeeArtemis!F62BDF584016
MAXmalware (ai score=99)
VBA32BScope.Adware.WinAD
PandaAdware/WUpd
TrendMicro-HouseCallADW_WINAD.N
RisingDropper.WinAd.h (CLASSIC)
YandexTrojan.GenAsa!zoLDxZ/x9wA
MaxSecureTrojan.Malware.1126074.susgen
FortinetAdware/Prevad
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Application.Generic.42206 (B)?

Application.Generic.42206 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment