Malware

What is “Application.LoadMoney.57”?

Malware Removal

The Application.LoadMoney.57 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.LoadMoney.57 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Application.LoadMoney.57?


File Info:

name: B50D227A7C9EE61F2A2D.mlw
path: /opt/CAPEv2/storage/binaries/3f60b9a1e8f817cbe5bb7366ddc7bd47e8096d984a6b65af45d6580269612988
crc32: 06B3A9D1
md5: b50d227a7c9ee61f2a2db500297f4361
sha1: 2903bb55f475b0da049d0c52668268b120841c0a
sha256: 3f60b9a1e8f817cbe5bb7366ddc7bd47e8096d984a6b65af45d6580269612988
sha512: 968b4b2f1ce8b7f282f4885e0a6d9741f1c4ff95d6d951c9c53d8dda1b0dda14e5c1b984ce0eab606ca9ee6b9fd947164d1fcc776dcba3513d78cd8d085e7307
ssdeep: 768:qfJowjyyK4UCb5us2wfJehSgKmPZI1T3CU/OjSN:qBoOe4UCFunwfeZI1zCUdN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B91359F3B4D50D2CDB0602F1CECA556687B88C244B724E36EB946B7496FA3DD1A2E1C4
sha3_384: 1787c6e8ca0496506ea0167f08579fbfc06b72d4ca164a967a07882218def8e687df3ab4fb8abb6f5b31b35b6140a9f2
ep_bytes: 5589e583ec28c745eb33383336c745ef
timestamp: 2013-11-09 21:00:43

Version Info:

FileDescription: Downloader
FileVersion: 1, 0, 0, 0
InternalName: Downloader
LegalCopyright: Copyright 2013
OriginalFilename: Downloader.exe
ProductName: Downloader
ProductVersion: 1, 0, 0, 0
Translation: 0x0419 0x04e3

Application.LoadMoney.57 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebTrojan.LoadMoney.188
MicroWorld-eScanGen:Variant.Application.LoadMoney.57
FireEyeGeneric.mg.b50d227a7c9ee61f
McAfeePUP-FDN
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Application.LoadMoney.57
SangforSuspicious.Win32.Save.a
K7AntiVirusAdware ( 004b9f991 )
K7GWAdware ( 004b9f991 )
Cybereasonmalicious.a7c9ee
BitDefenderThetaAI:Packer.0C8827D31F
CyrenW32/LoadMoney.Q.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/LoadMoney.AO potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.LMN.dmy
BitDefenderGen:Variant.Application.LoadMoney.57
SUPERAntiSpywarePUP.LoadMoney/Variant
AvastWin32:MiscX-gen [PUP]
TencentWin32.AdWare.Lmn.Sgil
EmsisoftGen:Variant.Application.LoadMoney.57 (B)
F-SecurePotentialRisk.PUA/LoadMoney.Gen7
TrendMicroTROJ_GEN.R002C0PEL23
McAfee-GW-EditionPUP-FDN
Trapminemalicious.high.ml.score
SophosMal/EncPk-ACO
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Application.LoadMoney.57
AviraPUA/LoadMoney.Gen7
MAXmalware (ai score=72)
Antiy-AVLGrayWare/Win32.LoadMoney
ArcabitTrojan.Application.LoadMoney.57
ViRobotAdware.Loadmoney.42496.ES
ZoneAlarmnot-a-virus:AdWare.Win32.LMN.dmy
MicrosoftSoftwareBundler:Win32/Ogimant
GoogleDetected
AhnLab-V3Trojan/Win32.LoadMoney.C211588
ALYacGen:Variant.Application.LoadMoney.57
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PEL23
RisingMalware.Ogimant!8.E948 (TFE:2:G0nx8SqJQPI)
YandexTrojan.GenAsa!pRiY73ug2ic
IkarusVirus.Win32.Cryptor
MaxSecureTrojan.Malware.208593834.susgen
FortinetRiskware/LoadMoney
AVGWin32:MiscX-gen [PUP]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Application.LoadMoney.57?

Application.LoadMoney.57 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment