Malware

About “Malware.AI.3038726568” infection

Malware Removal

The Malware.AI.3038726568 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3038726568 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.3038726568?


File Info:

crc32: 3FD54748
md5: e911d98e501e4e5ec70e8028abc302fb
name: E911D98E501E4E5EC70E8028ABC302FB.mlw
sha1: 84f67245bdae87a1868e990bee7d252f314b5003
sha256: f1eab07976b0555c6b4258b61c8a94ddf4be34839e30842d6aa080df1aad7e69
sha512: cddb4cc4c906991a4b80aff7832d18d2ae0bdb1b48ddf01712d159b56001c1ec6a874d15f8f05f7fceb177d9b0515519f8d1812250e79fa6fc139b21e9ebd769
ssdeep: 12288:WbBxl0y84cD3SLOmpuWYLx3vIRW2X3Ps9qThst17K/Y87MZmc2mmx:WbXbnpuZS0QkETutYQ8qmJx
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: 2009 - AOL LLC - All rights reserved
ProductVersion: 1.0.0.0
FileVersion: 1.0.0.0
OriginalFilename: AIMInst.exe
CompanyName: AOL LLC
Translation: 0x0409 0x0000

Malware.AI.3038726568 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
ClamAVWin.Malware.Razy-6900657-0
CAT-QuickHealTrojan.Generic
McAfeeRansomware-GCQ!E911D98E501E
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005159c41 )
BitDefenderGen:Variant.Ransom.Locky.217
K7GWTrojan ( 005159c41 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.34590.Pq0@aWxnP8hi
CyrenW32/Kryptik.CUI.gen!Eldorado
SymantecPacked.Generic.459
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Encoder.esloya
AegisLabTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Ransom.Locky.217
RisingTrojan.Kryptik!1.AD43 (CLOUD)
Ad-AwareGen:Variant.Ransom.Locky.217
SophosMal/Generic-S + Mal/Cerber-AL
ComodoMalware@#2ncn4i0g9fnhf
F-SecureTrojan.TR/Crypt.ZPACK.cucsq
DrWebTrojan.Encoder.13570
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPCERBER.SMALY5B
McAfee-GW-EditionBehavesLike.Win32.Dropper.jc
FireEyeGeneric.mg.e911d98e501e4e5e
EmsisoftGen:Variant.Ransom.Locky.217 (B)
IkarusTrojan.Win32.Filecoder
JiangminTrojan.Generic.gkphw
AviraTR/Crypt.ZPACK.cucsq
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftRansom:Win32/Locky.A
ArcabitTrojan.Ransom.Locky.217
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan-Ransom.Locky.DV
AhnLab-V3Win-Trojan/Cerber.Gen
Acronissuspicious
ALYacGen:Variant.Ransom.Locky.217
MAXmalware (ai score=100)
VBA32Trojan.Agentb
MalwarebytesMalware.AI.3038726568
PandaTrj/GdSda.A
ZonerTrojan.Win32.63917
ESET-NOD32Win32/Filecoder.Locky.L
TrendMicro-HouseCallRansom_HPCERBER.SMALY5B
TencentMalware.Win32.Gencirc.10b224a9
YandexTrojan.GenAsa!45RrCrqwKt0
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_98%
FortinetW32/Kryptik.HGZD!tr
AVGWin32:Malware-gen
Cybereasonmalicious.e501e4
Paloaltogeneric.ml
Qihoo-360HEUR/QVM20.1.833F.Malware.Gen

How to remove Malware.AI.3038726568?

Malware.AI.3038726568 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment