Malware

Application.NotMalware (A) malicious file

Malware Removal

The Application.NotMalware (A) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.NotMalware (A) virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Application.NotMalware (A)?


File Info:

name: CAB932D5C6372B977399.mlw
path: /opt/CAPEv2/storage/binaries/16bc4fc495ec822b15418f1403ef2b00e66a3556474242720ebd6dfdb2b8003b
crc32: B097F716
md5: cab932d5c6372b9773993772c1ae9331
sha1: f0bd575f872644b44c37748c0732c58c8e5483a2
sha256: 16bc4fc495ec822b15418f1403ef2b00e66a3556474242720ebd6dfdb2b8003b
sha512: 370e8aa9bf41fe20a1f841b27abafc094299cca818abd69f0598095ae302b7b8f10566de211b4f852da7e36ecf0a0aedd7205d0555746610aced62c6cd8a4629
ssdeep: 49152:Q8kx7bDkJ7+NVzaCe5K7rogN5UIjBofx1Zw:QbbkuaJ5KDMIjv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16895234A987BC805C91712B280421EE973BD49533D87256FFB40BBF87EB993B15809ED
sha3_384: 06d9840bfa77849fe6e3d3582897bae5c715aeed54884c28f393413281981f593b11d5ebc5c248d854ed48790ff42a92
ep_bytes: e80600000050e8bb010000558bec81c4
timestamp: 1972-12-25 05:33:23

Version Info:

FileVersion: 1.0.0.0
FileDescription: 播放器
ProductName: 播放器
ProductVersion: 1.0.0.0
CompanyName: 飞天小马
LegalCopyright: 飞天小马 版权所有
Comments: 播放器
Translation: 0x0804 0x04b0

Application.NotMalware (A) also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.FlyStudio.4!c
tehtrisGeneric.Malware
ClamAVWin.Packed.Flystudio-9979234-0
FireEyeGeneric.mg.cab932d5c6372b97
SkyhighBehavesLike.Win32.RealProtect.tc
McAfeeArtemis!CAB932D5C637
Cylanceunsafe
SangforTrojan.Win32.FlyStudio.Vlr0
CrowdStrikewin/malicious_confidence_60% (W)
K7GWTrojan ( 005194cc1 )
K7AntiVirusTrojan ( 005194cc1 )
BitDefenderThetaGen:NN.ZexaF.36680.7r3@aynLK7ab
VirITTrojan.Win32.Click2.DFZZ
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio potentially unwanted
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
CynetMalicious (score: 100)
EmsisoftApplication.NotMalware (A)
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
JiangminTrojan/Generic.bdesa
GoogleDetected
Antiy-AVLTrojan/Win32.Wacatac.b
KingsoftWin32.Troj.Undef.a
XcitiumTrojWare.Win32.FlyStudio.~UJ@1sa9s6
GDataWin32.Riskware.FlyStudio.C
VaristW32/Trojan.GMK.gen!Eldorado
DeepInstinctMALICIOUS
MalwarebytesTrojan.FlyStudio
RisingTrojan.Generic@AI.80 (RDML:fM7sRdBxp9v7nH4YFDbXAA)
SentinelOneStatic AI – Malicious PE
FortinetW32/FlyStudio.C!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.f87264

How to remove Application.NotMalware (A)?

Application.NotMalware (A) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment