Malware

What is “Application.RelevantKnowledge.49”?

Malware Removal

The Application.RelevantKnowledge.49 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.RelevantKnowledge.49 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Application.RelevantKnowledge.49?


File Info:

name: 8488DFA01FC5B4C7C3BD.mlw
path: /opt/CAPEv2/storage/binaries/0cc34991be9db739326d8dbf81e018a929c16e4631ab6c5b55f639ebe6c1048d
crc32: CE347B02
md5: 8488dfa01fc5b4c7c3bd132254b06b2e
sha1: a7a176a974fe9fad1edf99b1c71456dfbfd5dde8
sha256: 0cc34991be9db739326d8dbf81e018a929c16e4631ab6c5b55f639ebe6c1048d
sha512: a5d737fe32756fa934fdcb6885c266c5566759e47520ec46a28740927e5312db75479e2c7e4cda969f137c8bf627baef44ceadbc002acb7746530b61c17f0d2a
ssdeep: 49152:Jnk7Pix179B7+eOqRBDTLp8x20czayGEdiGPZtpx4muCD24kEKVPjk94z/xPnMnw:RLhB7xX8x2syl7PZ/WNCD24kXk9c/JXV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17BD533153DE2E4D5C6C7A8F33AFA5D28E3B919EAD03D211585E87DDB78B32250C23242
sha3_384: b9a091296fe66e8607e9250125b2348cf01096c0c017645b7ef9623b364990171c50514ea2737111903e19ab0399f074
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

0: [No Data]

Application.RelevantKnowledge.49 also known as:

BkavW32.AIDetect.malware2
LionicAdware.Win32.Relevant.2!c
Elasticmalicious (high confidence)
DrWebAdware.Relevant.193
FireEyeGen:Variant.Application.RelevantKnowledge.49
McAfeeArtemis!8488DFA01FC5
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.01fc5b
CyrenW32/Trojan.ZYIA-5025
SymantecTrojan.Gen.MBT
ESET-NOD32multiple detections
Paloaltogeneric.ml
Kasperskynot-a-virus:AdWare.Win32.Relevant.ac
BitDefenderGen:Variant.Application.RelevantKnowledge.49
NANO-AntivirusRiskware.Win32.Relevant.hbbdym
AvastWin32:Adware-gen [Adw]
TencentTrojan.Win32.BitCoinMiner.la
EmsisoftApplication.Generic (A)
ComodoApplicUnwnt@#qi0wsgkf39pj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.BadFile.vc
SophosGeneric PUA KH (PUA)
GDataGen:Variant.Application.RelevantKnowledge.49
JiangminAdware.Relevant.cm
AviraHEUR/AGEN.1124317
Antiy-AVLTrojan/Generic.ASMalwNS.9D1
ViRobotAdware.Relevant.2843269
CynetMalicious (score: 99)
AhnLab-V3Adware/Win.Generic.R434275
VBA32BScope.Adware.Relevant
ALYacGen:Variant.Application.RelevantKnowledge.49
MAXmalware (ai score=89)
MalwarebytesMalware.AI.4041066520
APEXMalicious
RisingAdware.VoiceFive!1.BB5C (CLASSIC)
YandexPUA.Agent!KKiklUP00Gw
FortinetAdware/Relevant
AVGWin32:Adware-gen [Adw]
PandaTrj/CI.A

How to remove Application.RelevantKnowledge.49?

Application.RelevantKnowledge.49 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment