Malware

How to remove “Application.LoadMoney.1 (B)”?

Malware Removal

The Application.LoadMoney.1 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.LoadMoney.1 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid

How to determine Application.LoadMoney.1 (B)?


File Info:

name: BBDDB79B17807865E9EA.mlw
path: /opt/CAPEv2/storage/binaries/f61c698b989ff9ef3efc6f792472d60707deb84da45861e759d841120bbcc5fe
crc32: 09099084
md5: bbddb79b17807865e9eaee956718bbbb
sha1: 09fd88c0d8fd3f7b9021edcc23f2199b08a791c5
sha256: f61c698b989ff9ef3efc6f792472d60707deb84da45861e759d841120bbcc5fe
sha512: 5e0577db8669fb6f3af53b9e85d79655ddbe2711ef0cd6bdc642d8a989791fc2b3ed200b78a61428784f115b07ff3c6bca3a6da6f8002d6cfe7eee82c25cf67b
ssdeep: 1536:ejxpCWif9hphnBlLQYEY2ngwhfhe2cJUu4YB14KIyU:ejxkW+P7lLQYENlfvKywTU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F2439E4BA501D4B3C79A0170B69F5FE98277E291A4D14C36CB798C4C2E5BB92EF2D342
sha3_384: 91127005cfdb0d51928445f38a3f68b620cfa9b4d529060aa6296561929bfc3e31f4ca5b3d3119724381f8445289936d
ep_bytes: 5589e583ec18c7042402000000ff1554
timestamp: 2013-06-04 17:59:26

Version Info:

0: [No Data]

Application.LoadMoney.1 (B) also known as:

tehtrisGeneric.Malware
DrWebTrojan.LoadMoney.1
MicroWorld-eScanGen:Application.LoadMoney.1
FireEyeGeneric.mg.bbddb79b17807865
CAT-QuickHealPUA.LLCMail.DC7
ALYacGen:Application.LoadMoney.1
MalwarebytesPUP.Optional.LoadMoney
ZillyaDownloader.LMNGen.Win32.8
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005868201 )
AlibabaAdWare:Win32/Kryptik.ae4ae9bf
K7GWTrojan ( 005868201 )
Cybereasonmalicious.b17807
CyrenW32/LoadMoney.B.gen!Eldorado
SymantecSMG.Heur!gen
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.BWAI
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Loadmoney-6795240-0
Kasperskynot-a-virus:AdWare.Win32.LMN.apm
BitDefenderGen:Application.LoadMoney.1
NANO-AntivirusTrojan.Win32.LoadMoney.ccdfjx
AvastWin32:LoadMoney-ATG [Adw]
RisingTrojan.Agent!1.6956 (CLASSIC)
Ad-AwareGen:Application.LoadMoney.1
EmsisoftGen:Application.LoadMoney.1 (B)
ComodoTrojWare.Win32.Kryptik.BWTO@598f3v
BaiduWin32.Trojan.Kryptik.dl
VIPREGen:Application.LoadMoney.1
TrendMicroTROJ_GEN.R002C0OHB22
McAfee-GW-EditionPWS-Zbot-FBDD!BBDDB79B1780
Trapminemalicious.high.ml.score
SophosTroj/LdMon-A
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.atwqf
GoogleDetected
AviraPUA/LoadMoney.qoib
Antiy-AVLTrojan/Generic.ASBOL.C628
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmnot-a-virus:AdWare.Win32.LMN.apm
GDataGen:Application.LoadMoney.1
CynetMalicious (score: 100)
McAfeePWS-Zbot-FBDD!BBDDB79B1780
MAXmalware (ai score=74)
VBA32BScope.Downloader.LMN
TrendMicro-HouseCallTROJ_GEN.R002C0OHB22
YandexTrojan.GenAsa!HyGEJZrzJjc
MaxSecurenot-a-virus:Downloader.LMN.a
FortinetW32/Generic.AC.6F6F!tr
AVGWin32:LoadMoney-ATG [Adw]
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Application.LoadMoney.1 (B)?

Application.LoadMoney.1 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment