Malware

Malware.AI.3148276775 (file analysis)

Malware Removal

The Malware.AI.3148276775 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3148276775 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Malware.AI.3148276775?


File Info:

name: 4DF0B855C31181F4F36A.mlw
path: /opt/CAPEv2/storage/binaries/9402b2108543a9646cf6424a1d1e6503942130c3f10d03fc06fbd1ff2aed13f5
crc32: 57E42981
md5: 4df0b855c31181f4f36a865039158b87
sha1: 52d67f00b186bdd080f79696ce3430a7f82f14c1
sha256: 9402b2108543a9646cf6424a1d1e6503942130c3f10d03fc06fbd1ff2aed13f5
sha512: eb52718ea65fe6bff19f75d18d00950ff642c7d6f37b4014092b543512223d3c4be0a6ef9d574a4a3912a6e02db56fb2470ebb4cd90c95d5d48fa8288019e757
ssdeep: 768:S1cVhpQI2EQK0iPDh84nScF15GYbWjXO3XJqCGyVyOoKxm:wQpQ5EP0ijnRTXJqCNgvSm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A103AE5A36D0C8BBE46706321A77EB7AE7FAE7052611061F5BA04FBF6811183D9062C7
sha3_384: 7dc69d1e71d461483eece4ec33b34687877a04bf94b43b66a82b5abf80ddea4366b1a1cb30fc766bef7906cca685fcaf
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-06-06 21:41:54

Version Info:

0: [No Data]

Malware.AI.3148276775 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.NSIS.MyxaH.j!c
McAfeeRDN/Ransom
CylanceUnsafe
SangforRansom.Win32.Xamyh.bqu
AlibabaRansom:Win32/Xamyh.8f840e9f
SymantecTrojan.Gen.MBT
APEXMalicious
KasperskyTrojan-Ransom.NSIS.Xamyh.bqu
TencentNsis.Trojan.Myxah.Pike
McAfee-GW-EditionRDN/Ransom
SophosMal/Generic-S (PUA)
KingsoftWin32.Troj.Undef.(kcloud)
ViRobotTrojan.Win32.Z.Xamyh.40772
AhnLab-V3Malware/Gen.Generic.C1641284
MAXmalware (ai score=100)
VBA32TrojanRansom.Xamyh
MalwarebytesMalware.AI.3148276775
SentinelOneStatic AI – Suspicious PE

How to remove Malware.AI.3148276775?

Malware.AI.3148276775 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment