Malware

Malware.AI.3076744624 (file analysis)

Malware Removal

The Malware.AI.3076744624 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3076744624 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3076744624?


File Info:

name: D8D666B8DF81703BC5EE.mlw
path: /opt/CAPEv2/storage/binaries/2d672ecbbd91a6ab05065b97d2b11da8c72c8fb06018aae4524d82bd91faab9c
crc32: A9654995
md5: d8d666b8df81703bc5ee1e6b59bd376c
sha1: aba79406fc8555429d9435ea18cb6cbeab861418
sha256: 2d672ecbbd91a6ab05065b97d2b11da8c72c8fb06018aae4524d82bd91faab9c
sha512: 9078abc38246e082e1b939742268dad209ca6fd493d186a710e79b610cf0ba9f1014fd10db39183a11b2b43197318530f388b14e05a1d2151cd006450e8b92ab
ssdeep: 3072:nLM8FL1n5lLCuq3p2iEs5+yhyNcSm2f/BS8baRYXLHIxCnNCMncRbabX4N4UWsCS:nDrn5FRq3p2iEs5ROcel4NKFWhv4Ph
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C724C83235F96604F17BAB3917F131909BEEFA27A702E51D2D50038A4E379C1DDD22A9
sha3_384: f52a27cfdb18b8fe1287faf16413a0a082fc9af559530784c9a8f9a14fe3962b60ea79063a3fe216b7a42b8dc2f187ef
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-05-12 02:43:16

Version Info:

Translation: 0x0000 0x04b0
FileDescription: WindowsApplication26
FileVersion: 1.0.0.0
InternalName: WindowsApplication26.exe
LegalCopyright: Copyright © 2021
OriginalFilename: WindowsApplication26.exe
ProductName: WindowsApplication26
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.3076744624 also known as:

LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.471036
FireEyeGeneric.mg.d8d666b8df81703b
McAfeeArtemis!D8D666B8DF81
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3168628
SangforBackdoor.MSIL.Bladabindi.gen
K7AntiVirusTrojan ( 0053f8bf1 )
AlibabaBackdoor:MSIL/Bladabindi.fa3180c7
K7GWTrojan ( 0053f8bf1 )
Cybereasonmalicious.6fc855
BitDefenderThetaGen:NN.ZemsilF.34084.nq0@aab6yVi
CyrenW32/Trojan.QVUU-5963
SymantecBackdoor.Ratenjay
ESET-NOD32a variant of MSIL/Kryptik.PXT
Paloaltogeneric.ml
ClamAVWin.Packed.Generic-9865070-0
KasperskyHEUR:Backdoor.MSIL.Bladabindi.gen
BitDefenderGen:Variant.Bulz.471036
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Bulz.471036
EmsisoftGen:Variant.Bulz.471036 (B)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.dm
SophosMal/Generic-S
IkarusTrojan.MSIL.Injector
GDataGen:Variant.Bulz.471036
AviraHEUR/AGEN.1137703
ArcabitTrojan.Bulz.D72FFC
MicrosoftTrojan:Win32/Skeeyah.A!rfn
CynetMalicious (score: 99)
AhnLab-V3Malware/Win32.RL_Generic.C3461107
ALYacGen:Variant.Bulz.471036
MAXmalware (ai score=88)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.3076744624
APEXMalicious
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_98%
FortinetMSIL/GenKryptik.FBA!tr
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.3076744624?

Malware.AI.3076744624 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment