Malware

How to remove “Malware.AI.3050608048”?

Malware Removal

The Malware.AI.3050608048 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3050608048 virus can do?

  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3050608048?


File Info:

name: 6F2FAA292FC12134CE05.mlw
path: /opt/CAPEv2/storage/binaries/5979ee84536889b01d21f9e1b6a5d80153a31a656f4710419b08ea6e62ef29f0
crc32: F8C57B78
md5: 6f2faa292fc12134ce0525c4c354f993
sha1: d4600a85091b7605de197f3f8a41fb5bc6b015ee
sha256: 5979ee84536889b01d21f9e1b6a5d80153a31a656f4710419b08ea6e62ef29f0
sha512: 27d8bcdebc7f6c70dcc128582dfc7b5f3c6a1a68f2f5f4ba3f5f15b42c466f0ec2d4b3ee6a20f3a5806ddf63ef7ba1b1a227d3b3cfb5537e436883f4fc700451
ssdeep: 98304:JXz+6Bfgc4kgsy9wN/FPU73f3mJ954kEw3jBYTqLQFtM6:hK6B4h/syg8vmr/tYVtM6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11B063379305251B9D1120D36CD5B92ABF57EBA042FA5588FA3DE073C8C33A0B1E63676
sha3_384: ab6a4fa1b5ba9f17612e7ac8b68215c116290afc2f9734ac757e16e4e8e189e152174d7f40ce8c00b3dab33925f61b6b
ep_bytes: 558bec83c4f0b888534200e824f2fdff
timestamp: 1992-06-19 22:22:17

Version Info:

Comments:
CompanyName: Black Market
FileDescription: Black Market 1.2.10 Installation
FileVersion: 1.2.10
LegalCopyright: Black Market
Translation: 0x0409 0x04e4

Malware.AI.3050608048 also known as:

LionicTrojan.Win32.Miner.4!c
DrWebTool.Nssm.6
MicroWorld-eScanGen:Variant.Razy.807972
FireEyeGen:Variant.Razy.807972
ALYacGen:Variant.Razy.807972
CylanceUnsafe
SangforTrojan.Win32.MereTam.A
K7AntiVirusTrojan ( 00560c521 )
AlibabaTrojan:Win32/Miner.32bdce75
K7GWTrojan ( 00560c521 )
Cybereasonmalicious.92fc12
CyrenW64/Trojan.DYHE-7588
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win64/Packed.Themida.KE
TrendMicro-HouseCallTROJ_GEN.R002H0CKT21
Paloaltogeneric.ml
ClamAVWin.Dropper.Nanocore-9795677-0
KasperskyTrojan.Win32.Miner.aszaf
BitDefenderGen:Variant.Razy.807972
NANO-AntivirusTrojan.Win64.Miner.iicipv
AvastWin64:Trojan-gen
EmsisoftGen:Variant.Razy.807972 (B)
McAfee-GW-EditionBehavesLike.Win32.Backdoor.wc
SophosMal/Generic-S
IkarusTrojan.Win64.Themida
GDataGen:Variant.Razy.807972
WebrootW32.Trojan.Gen
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftRansom.Win32.Gen.sa
MicrosoftTrojan:Win32/MereTam.A
CynetMalicious (score: 100)
McAfeeArtemis!6F2FAA292FC1
MAXmalware (ai score=99)
VBA32Trojan.Miner
MalwarebytesMalware.AI.3050608048
APEXMalicious
YandexTrojan.Miner!YyWn5GlCLYU
SentinelOneStatic AI – Suspicious PE
FortinetW32/CoinMiner.FQ!tr
AVGWin64:Trojan-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.3050608048?

Malware.AI.3050608048 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment