Malware

Malware.AI.3125288585 information

Malware Removal

The Malware.AI.3125288585 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3125288585 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3125288585?


File Info:

name: 25EC7607BBE479D91B95.mlw
path: /opt/CAPEv2/storage/binaries/4c61c216e219e475bb0e46e153c2d0ed47ff0f9eb5fc699f0e1ed0a6ed1441f9
crc32: 744C4969
md5: 25ec7607bbe479d91b95224d4681f2f1
sha1: dedd5aade5a9cff5f9e083973b6aa4878cd991ff
sha256: 4c61c216e219e475bb0e46e153c2d0ed47ff0f9eb5fc699f0e1ed0a6ed1441f9
sha512: 970c184410a0bfe9b059b2622961304fe3b2e461782ea5e3a6e7cbde01366ad699a79f408091369695f6fe2639f2ca40a615fbd6882e294d0b2d34374843f813
ssdeep: 1536:0A/WgF1oZvW+d+Hd1RshNK2Ht2h1521KDFwmdk:0A+gwaH/RWt2hu1KD61
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F2B3E1031F994EFFE0764C74467B5F307E78BA59F622AB464690CDB92D713201CAB414
sha3_384: c3e5380f99849ab06be3c7e65f4535377aef9c5720f3dd4870d4b149f17b5120910c8c101fe62fefffee384e75134fc6
ep_bytes: 53575655e8000000005d81ed4c130010
timestamp: 2007-12-08 14:51:37

Version Info:

CompanyName: Igor Pavlov + Paraglider
FileDescription: 7z Setup SFX
FileVersion: 4.57
InternalName: 7zS.sfx
LegalCopyright: Copyright (c) 1999-2007 Igor Pavlov
OriginalFilename: 7zS.sfx.exe
ProductName: 7-Zip
ProductVersion: 4.57
Translation: 0x0409 0x04b0

Malware.AI.3125288585 also known as:

BkavW32.AIDetect.malware1
tehtrisGeneric.Malware
FireEyeGeneric.mg.25ec7607bbe479d9
CylanceUnsafe
SangforSuspicious.Win32.Save.a
Cybereasonmalicious.de5a9c
Elasticmalicious (high confidence)
ESET-NOD32Win32/RiskWare.PEMalform.B
APEXMalicious
NANO-AntivirusTrojan.Win32.AutoRun.wqect
AvastFileRepMalware [Misc]
TencentWin32.Risk.Riskware.ojk
ComodoTrojWare.Win32.Kryptik.~NT@1r0f0f
DrWebTrojan.MulDrop7.60152
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.8SZEZL
AviraTR/Crypt.XPACK.Gen3
CynetMalicious (score: 100)
VBA32TrojanRansom.Blocker
MalwarebytesMalware.AI.3125288585
RisingPacker.Win32.Crypt.eg (CLASSIC)
YandexTrojan.GenAsa!qJZ4i4ntpbc
IkarusTrojan.Win32.Dialer
FortinetW32/Onlinegames.ASE!tr
BitDefenderThetaGen:NN.ZexaF.34582.hi0@amHlK1ai
AVGFileRepMalware [Misc]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Malware.AI.3125288585?

Malware.AI.3125288585 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment