Malware

Should I remove “Malware.AI.3013952612”?

Malware Removal

The Malware.AI.3013952612 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3013952612 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.3013952612?


File Info:

name: C675BFFEFB9E2C519583.mlw
path: /opt/CAPEv2/storage/binaries/33a1758af6c562bf08a20cc9f282d753a9f6ce812707bbf9d1d7f357a0f523e4
crc32: 4714F069
md5: c675bffefb9e2c5195833360197705da
sha1: 2faf1bd653cacb36ffb34df91bebceb9200fc050
sha256: 33a1758af6c562bf08a20cc9f282d753a9f6ce812707bbf9d1d7f357a0f523e4
sha512: 9fd8030b50c2db16a2bd0a983eaf54a5a6a58129d802b15cc40dc931c276a68b9d5bb3c922f2940099e89a624cb10d5319587b32c33fd2540d988958f7f128d4
ssdeep: 768:S2VO7u/wrZe52EpusAPRWz4oMxFbjskVZuS8h8IU9:S2VLwrZeTuhPI4oA8kV3Z
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16FB3E40226018969F35C0B385A46FBE458A9AD7C94E4F64FF47CBE7A2D32093497724F
sha3_384: 34c90696bf5afb36a66b37064584f18e31830e9dfd964e542fed2e8faaa5237decd05c695da2ce5e87bbfaaf7de42eb4
ep_bytes: 60be00d02f008dbe0040fdff5783cdff
timestamp: 2012-07-15 07:42:54

Version Info:

0: [No Data]

Malware.AI.3013952612 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanTrojan.GenericKDZ.88961
FireEyeGeneric.mg.c675bffefb9e2c51
McAfeeGenericRXAA-AA!C675BFFEFB9E
SangforSuspicious.Win32.Save.a
Cybereasonmalicious.653cac
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Dropper.Xytets-9953031-0
BitDefenderTrojan.GenericKDZ.88961
AvastWin32:Evo-gen [Susp]
Ad-AwareTrojan.GenericKDZ.88961
SophosGeneric ML PUA (PUA)
ComodoPacked.Win32.MUPX.Gen@24tbus
DrWebTrojan.Xytets
McAfee-GW-EditionArtemis!Trojan
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKDZ.88961 (B)
IkarusTrojan.Win32.Rimecud
GDataTrojan.GenericKDZ.88961
AviraHEUR/AGEN.1234327
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Jorik.R74525
BitDefenderThetaGen:NN.ZexaF.34742.gmW@ayRY1dmj
ALYacTrojan.GenericKDZ.88961
MAXmalware (ai score=82)
VBA32BScope.Trojan.Xytets
MalwarebytesMalware.AI.3013952612
TrendMicro-HouseCallTROJ_GEN.R002H09FP22
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/ULPM.16C0!tr
AVGWin32:Evo-gen [Susp]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.3013952612?

Malware.AI.3013952612 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment