Malware

What is “Malware.AI.1606579239”?

Malware Removal

The Malware.AI.1606579239 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1606579239 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.1606579239?


File Info:

name: 3ADB2360F264C7247F26.mlw
path: /opt/CAPEv2/storage/binaries/8acc3ac7ccbddb16b53a210b0358503ac658519a4d82573dce8db9e4a41d7409
crc32: 19A571A7
md5: 3adb2360f264c7247f26cf8cbee80c12
sha1: 373e0c752e665292a0fdb93d19cbb6ba40e3ceee
sha256: 8acc3ac7ccbddb16b53a210b0358503ac658519a4d82573dce8db9e4a41d7409
sha512: a47e0818bc2f1f559a9e7263d050458b0e8b7ea892c01e7d2d50e51985fc179b7bd9f991bfa57ae61a5ee5b02514cba524c4fbd2fae8cfbc374cfb0aa8f29c7c
ssdeep: 24576:3FE//Tct4bOsM2jlWkc8gdPFksLBrdilJ7AgGgidsDYAEP7s+5OtaOEEYkJj:VSVM2jlWR8gxFldilJ7AgfiqMAK7ssOF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E055F042BA16CD52C1DC36784F66EB741324DE882F61874F26E57E6F793BA132C4928C
sha3_384: a2970d502164cf53cb3bb023f49771f8561951289c0760b53b66c3b70f0541abafdea4de554e64667033d0ff49beef92
ep_bytes: 60be00a04d008dbe0070f2ff57eb0b90
timestamp: 2010-04-16 07:47:33

Version Info:

FileDescription:
FileVersion: 3, 3, 6, 1
CompiledScript: AutoIt v3 Script: 3, 3, 6, 1
Translation: 0x0809 0x04b0

Malware.AI.1606579239 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (moderate confidence)
McAfeeArtemis!3ADB2360F264
Cylanceunsafe
ZillyaTrojan.GenericKD.Win32.87534
SangforTrojan.Win32.Autoit.V627
K7AntiVirusTrojan ( 0055e39b1 )
AlibabaPacked:Win32/Generic.ede3da56
K7GWTrojan ( 0055e39b1 )
CrowdStrikewin/malicious_confidence_90% (W)
ESET-NOD32Win32/Packed.Autoit.E.Gen suspicious
APEXMalicious
McAfee-GW-EditionBehavesLike.Win32.BadFile.tc
Trapminemalicious.moderate.ml.score
JiangminTrojan.Generic.hhfkp
Antiy-AVLGrayWare/Autoit.BinToStr.a
XcitiumMalware@#1kdrcy62jnypp
MicrosoftTrojan:Win32/Zpevdo.B
VBA32Trojan.Autoit.F
MalwarebytesMalware.AI.1606579239
RisingTrojan.Obfus/Autoit!1.98B2 (CLASSIC)
YandexWorm.Autoit.Gen
FortinetPossibleThreat
Cybereasonmalicious.52e665
DeepInstinctMALICIOUS

How to remove Malware.AI.1606579239?

Malware.AI.1606579239 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment