Malware

Malware.AI.3049037528 malicious file

Malware Removal

The Malware.AI.3049037528 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3049037528 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.3049037528?


File Info:

crc32: 9BC3BA85
md5: 2635ec22b79c027bc63d5e5a80a49238
name: 2635EC22B79C027BC63D5E5A80A49238.mlw
sha1: 96ef3e03a25f2a7095a855b4586e93b9ffae50f6
sha256: a2c3a1451cbc854d4b5929132eb96e9e34b2a1f3bedb490b26699381bb80eeee
sha512: 2ad0a482fc0b18135cf5cbe5e1752837364e31c31839620271514e9e5779a1157653a46384660fbf1d208bd5101a65cfe69029119c4596d94152f568777f62d2
ssdeep: 12288:pAbByRVhGihqt0YUkYqrUljp7sZYLFu65mocNXWP8n7CAvUco4Q60wJfSa0SlaC:m4MJ2qr8RmYLFuS/E7jxQnw0Cg8
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021Audio Realtek Driver
Assembly Version: 1.0.0.0
InternalName: Audio Realtek Driver.exe
FileVersion: 1.0.0.0
CompanyName: Audio Realtek Driver
LegalTrademarks: Audio Realtek Driver
Comments: Audio Realtek Driver
ProductName: Audio Realtek Driver
ProductVersion: 1.0.0.0
FileDescription: Audio Realtek Driver
OriginalFilename: Audio Realtek Driver.exe

Malware.AI.3049037528 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.91423
FireEyeGeneric.mg.2635ec22b79c027b
CAT-QuickHealBackdoor.MSIL
ALYacGen:Variant.Cerbu.91423
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.MSIL.Androm.m!c
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderGen:Variant.Cerbu.91423
K7GWTrojan ( 00577eca1 )
K7AntiVirusTrojan ( 00577eca1 )
BitDefenderThetaGen:NN.ZemsilF.34590.Pm0@a8Ktbhg
CyrenW32/MSIL_RRat.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Packed.EzirizNetReactor.BI
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Packed.Generic-7139870-0
KasperskyHEUR:Backdoor.MSIL.Androm.gen
AlibabaBackdoor:MSIL/Androm.0eb8310d
TencentMsil.Backdoor.Androm.Hpib
Ad-AwareGen:Variant.Cerbu.91423
SophosMal/Generic-S
ComodoTrojWare.Win32.UMal.qpzfx@0
F-SecureHeuristic.HEUR/AGEN.1105297
DrWebTrojan.Inject4.7380
TrendMicroBackdoor.MSIL.ANDROM.THBBCBA
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
EmsisoftGen:Variant.Cerbu.91423 (B)
IkarusTrojan.MSIL.EzirizNetReactor
MaxSecureTrojan.Malware.300983.susgen
AviraHEUR/AGEN.1105297
MAXmalware (ai score=81)
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftBackdoor:MSIL/Noancooe.B
ArcabitTrojan.Cerbu.D1651F
AhnLab-V3Malware/Win32.RL_Generic.C4326079
ZoneAlarmHEUR:Backdoor.MSIL.Androm.gen
GDataGen:Variant.Cerbu.91423
CynetMalicious (score: 100)
McAfeeRDN/Generic BackDoor
MalwarebytesMalware.AI.3049037528
PandaTrj/GdSda.A
TrendMicro-HouseCallBackdoor.MSIL.ANDROM.THBBCBA
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetMSIL/Kryptik.YMN!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Androm.HwMAfMcA

How to remove Malware.AI.3049037528?

Malware.AI.3049037528 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment