Malware

About “Malware.AI.3115846813” infection

Malware Removal

The Malware.AI.3115846813 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3115846813 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3115846813?


File Info:

name: 12AA8514013D4DE30AA7.mlw
path: /opt/CAPEv2/storage/binaries/223aa351fd59d07cb25b6cbe8677bb3e09959d7a24902809ba31154330b64098
crc32: C6F69A03
md5: 12aa8514013d4de30aa7446ae48280be
sha1: b35c9e27fa0ea9ceeed99b968b8660361f29b4b7
sha256: 223aa351fd59d07cb25b6cbe8677bb3e09959d7a24902809ba31154330b64098
sha512: 8fd0c3e1318a360b953eedf29ae3e59b77be617f49e368c11b8e20c8e858b8954eb6e33f0d307a57b1063f15813b09067c2393ae3d9ee98321be7f5d75926523
ssdeep: 768:5lASYrweEhBbNJ/Vn6ZTiAdmEX7kOX+jOZplHmXa6kSgCrTCNyHORwo8:5lAS6weEX55VUGAdFQHCGq6QCrTiLn8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T133338E54F6D0ACB2DA92AD7716067773622EEC325D24ED6393A00F9DA42C4420D9FF93
sha3_384: ee17dce06864aab4e87579087af627fead2772a91f8f1956d567839c0d23da355ec3e8a0738351fafcab77fc410bb87c
ep_bytes: 0b8f40004b0001010b8f400000000000
timestamp: 2007-04-02 16:35:20

Version Info:

0: [No Data]

Malware.AI.3115846813 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.12aa8514013d4de3
McAfeeArtemis!12AA8514013D
MalwarebytesMalware.AI.3115846813
VIPRETrojan.Spy.ZBot.MK
CrowdStrikewin/malicious_confidence_70% (D)
tehtrisGeneric.Malware
APEXMalicious
BitDefenderTrojan.Spy.ZBot.MK
MicroWorld-eScanTrojan.Spy.ZBot.MK
AvastSf:Zbot-JD [Trj]
Ad-AwareTrojan.Spy.ZBot.MK
ComodoTrojWare.Win32.Spy.Zbot.ABA@1pe611
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.PWS.Panda.31
TrendMicroMal_Zbot-6
EmsisoftTrojan.Spy.ZBot.MK (B)
GDataTrojan.Spy.ZBot.MK
AviraTR/Crypt.XPACK.Gen
MicrosoftPWS:Win32/Zbot.gen!Q
AhnLab-V3Worm/Win32.IRCBot.R140813
BitDefenderThetaGen:NN.ZexaF.34698.dqW@aaNxf0h
ALYacTrojan.Spy.ZBot.MK
MAXmalware (ai score=82)
TrendMicro-HouseCallMal_Zbot-6
RisingTrojan.Generic@AI.100 (RDML:7f+zq/CxZIp4WrFRqZ4orw)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGSf:Zbot-JD [Trj]
Cybereasonmalicious.4013d4

How to remove Malware.AI.3115846813?

Malware.AI.3115846813 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment