Malware

Dropped:Application.Generic.3002907 malicious file

Malware Removal

The Dropped:Application.Generic.3002907 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Application.Generic.3002907 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
kaneki.selfip.net

How to determine Dropped:Application.Generic.3002907?


File Info:

crc32: 10DCEA71
md5: 125e09beac8ca0150979deb5d64f9058
name: 125E09BEAC8CA0150979DEB5D64F9058.mlw
sha1: c801d0aeab0222dc2c9e15e7e7be1dd682d8d69d
sha256: 728fc6a2dba38cdd3aafd113be24c8aa7133967e849308bc254b16f47ce34791
sha512: 37f03523f66bb270d2163609f3bfc4996c3607a85ebc507461e35bb837335e3ffef189d5a296397dca207bb11fd6c6af199ebd1133a09b52818b8db82e6b4bb7
ssdeep: 24576:Pz1I9YOrVQ4bznGcSqMYGPLGaz/d//8RrPjVQrE2xE0:PzmuOhXnX6YEGaz/J/8RrRQrEy
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Dropped:Application.Generic.3002907 also known as:

K7AntiVirusUnwanted-Program ( 004d38111 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader24.63359
CynetMalicious (score: 100)
CAT-QuickHealPUA.KeygenPMF.S13319306
ALYacDropped:Application.Generic.3002907
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWUnwanted-Program ( 004d38111 )
Cybereasonmalicious.eac8ca
CyrenW32/Trojan.FMB.gen!Eldorado
SymantecBackdoor.Ratenjay
ESET-NOD32multiple detections
ZonerTrojan.Win32.48371
APEXMalicious
AvastWin32:GenMaliciousA-UXZ [Trj]
ClamAVWin.Trojan.Emotet-6428938-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDropped:Application.Generic.3002907
NANO-AntivirusTrojan.Win32.Bladabindi.eppbpl
MicroWorld-eScanDropped:Application.Generic.3002907
TencentWin32.Trojan.Spy.Dvqc
Ad-AwareDropped:Application.Generic.3002907
SophosGeneric Reputation PUA (PUA)
ComodoMalware@#aqskabsqp604
F-SecureHeuristic.HEUR/AGEN.1112182
BitDefenderThetaGen:NN.ZexaF.34236.1qW@a8uqJNpe
VIPREHackTool.Win32.Keygen
TrendMicroPUA.Win32.KeyGen.CRRM
McAfee-GW-EditionGeneric.bbx
FireEyeGeneric.mg.125e09beac8ca015
EmsisoftDropped:Application.Generic.3002907 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bbbgw
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1112182
Antiy-AVLTrojan/Win32.TSGeneric
KingsoftWin32.Troj.Agent.ao.(kcloud)
MicrosoftHackTool:Win32/Keygen
ArcabitApplication.Generic.D2DD21B
SUPERAntiSpywareHack.Tool/Gen-Crack
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataDropped:Application.Generic.3002907
AhnLab-V3Trojan/Win32.Ratenjay.C956267
McAfeeArtemis!125E09BEAC8C
MAXmalware (ai score=100)
VBA32Trojan.Downloader
MalwarebytesRiskWare.Agent
PandaTrj/CI.A
TrendMicro-HouseCallPUA.Win32.KeyGen.CRRM
RisingTrojan.Generic@ML.100 (RDMK:nVSuHaXk3ZP17N823tNCKQ)
YandexTrojan.Igent.bUAS7g.38
IkarusTrojan.MSIL.Injector
FortinetRiskware/Keygen_OX
AVGWin32:GenMaliciousA-UXZ [Trj]
Paloaltogeneric.ml

How to remove Dropped:Application.Generic.3002907?

Dropped:Application.Generic.3002907 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment