Malware

What is “Dropped:Application.Generic.1817668”?

Malware Removal

The Dropped:Application.Generic.1817668 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Application.Generic.1817668 virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Dropped:Application.Generic.1817668?


File Info:

crc32: DE1252A9
md5: 98df0e905d52f0a186797814c59e3ef2
name: 98DF0E905D52F0A186797814C59E3EF2.mlw
sha1: 6238b4aee32babe1557622ce63d754a1d12ea69e
sha256: 2cb2071714acdcc628198150805e301459072bb275ac35c22eec1d270405f5eb
sha512: 52eaae4f067fef23e0f747f90799b2c5c2db833c557ecfca0a7c3d5dfd21d8c50d0562f9c97e4f95189dfe420f1e25c23dac9c4361534adc3792301cca7eea8d
ssdeep: 768:4nnw4xRMjJ8FBDOLQmzPjhAVHx10Z0D3yuInmBd0cpbTmbYlunP:Snw8RSijDtSA5xeZ0DbBCcpbNoP
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Dropped:Application.Generic.1817668 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebAdware.Dotdo.196
CynetMalicious (score: 100)
ALYacDropped:Application.Generic.1817668
CylanceUnsafe
SangforPUP.Win32.Dotdo.CF
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.05d52f
CyrenW32/Dotdo.H.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:UDS:AdWare.NSIS.Dotdo.gen
BitDefenderDropped:Application.Generic.1817668
NANO-AntivirusTrojan.Win32.Dotdo.ewurnb
MicroWorld-eScanDropped:Application.Generic.1817668
TencentNsis.Adware.Dotdo.Hwmx
Ad-AwareDropped:Application.Generic.1817668
SophosGeneric PUA GC (PUA)
ComodoApplicUnwnt@#2kmukt20a7d6x
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.AdwareTskLnk.nh
FireEyeGeneric.mg.98df0e905d52f0a1
EmsisoftDropped:Application.Generic.1817668 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1116897
MicrosoftTrojan:Win32/Wacatac.A!ml
ZoneAlarmnot-a-virus:HEUR:AdWare.NSIS.Dotdo.gen
GDataDropped:Application.Generic.1817668
AhnLab-V3PUP/Win32.DealPly.C2197855
McAfeeArtemis!98DF0E905D52
MAXmalware (ai score=95)
MalwarebytesAdware.DotDo.Generic
PandaTrj/CI.A
YandexPUA.Dotdo!KswVptbcL6g
IkarusAdWare.Dotdo
FortinetAdware/Dotdo
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Dropped:Application.Generic.1817668?

Dropped:Application.Generic.1817668 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment