Malware

Malware.AI.3021473520 removal instruction

Malware Removal

The Malware.AI.3021473520 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3021473520 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.3021473520?


File Info:

crc32: 2E691A5D
md5: 398dd197c9486ff668b05f51b8fbd82d
name: 398DD197C9486FF668B05F51B8FBD82D.mlw
sha1: 72aaf9c3c10d7743a3ffaff9f23379f00ca18e8f
sha256: 5b6e42fac9f405309609b4a69a66855666f67047e1542850955469e47ad52f2e
sha512: 551d243f2bb108b105fd8b7112cdc9924021ee74a118c47dd10d72117b4f113487b1f4114d9faa8f4d4dd059c80bd8243baa0a0bc439d93fe728c3b94612165f
ssdeep: 3072:8muwb1voRnfqul4bA7Z5Vn+xQLsjXG1RE:tu21wfqRC5Vn+C2XYRE
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2016
Assembly Version: 1.0.0.0
InternalName: WindowsApplication4.exe
FileVersion: 1.0.0.0
ProductName: WindowsApplication4
ProductVersion: 1.0.0.0
FileDescription: WindowsApplication4
OriginalFilename: WindowsApplication4.exe

Malware.AI.3021473520 also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.398dd197c9486ff6
Qihoo-360HEUR/QVM03.0.0B1B.Malware.Gen
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 004915961 )
K7GWTrojan ( 004915961 )
Cybereasonmalicious.3c10d7
BitDefenderThetaGen:NN.ZemsilF.34804.oq0@aiCjJHi
CyrenW32/MSIL_Kryptik.BIT.gen!Eldorado
SymantecBackdoor.Ratenjay
ESET-NOD32a variant of MSIL/Bladabindi.AS
APEXMalicious
AvastMSIL:GenMalicious-T [Trj]
ClamAVWin.Packed.Johnnie-6860334-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.AD.elnqdo
TencentWin32.Trojan.Generic.Llht
F-SecureHeuristic.HEUR/AGEN.1130636
DrWebTrojan.DownLoader21.35073
ZillyaDropper.Agent.Win32.256532
McAfee-GW-EditionBackDoor-NJRat.a
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.asssx
AviraHEUR/AGEN.1130636
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:MSIL/Bladabindi
AhnLab-V3Malware/Win32.Generic.C959959
ZoneAlarmHEUR:Trojan.Win32.Generic
CynetMalicious (score: 85)
McAfeeBackDoor-NJRat.a
MalwarebytesMalware.AI.3021473520
PandaTrj/GdSda.A
RisingBackdoor.Bladabindi!8.B1F (CLOUD)
YandexTrojan.Agent!smmbuCs7MEs
IkarusTrojan.MSIL.Injector
eGambitUnsafe.AI_Score_84%
FortinetMSIL/Kryptik.GOZ!tr
AVGMSIL:GenMalicious-T [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.3021473520?

Malware.AI.3021473520 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment