Malware

Malware.AI.3158062536 removal

Malware Removal

The Malware.AI.3158062536 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3158062536 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.3158062536?


File Info:

crc32: DEF374FC
md5: c08d3446b89d1344577809c3f3ec1a72
name: C08D3446B89D1344577809C3F3EC1A72.mlw
sha1: 6babe4a2453297dc40c070b752d0ebc60472c529
sha256: 702e887cc92244dc67b2839315740b2a4f6baa9642788c92029ba74529e34240
sha512: 687ba91ed532d6e202539b638b82997a9ec6cb14be8c02f9dd3469eda0c79ec0cc93a05b50adbc3b3503802353566bad0f5ff78aa100332565344075404ddf86
ssdeep: 12288:4Iy48wkQX40xodlG4d0DNoYQWdlaS1OxmZmcb4:4PQXfxodlG4K+YQWOmZ3b4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2016
InternalName: PaymentTools
FileVersion: 2, 5, 2, 0
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: Payment Product Tools x5e94x7528x7a0bx5e8f
SpecialBuild:
ProductVersion: 2, 5, 2, 0
FileDescription: x65b0x5927x9646x652fx4ed8x4ea7x54c1x4e0bx8f7dx5de5x5177V2.5.2
OriginalFilename: PaymentTools.EXE
Translation: 0x0804 0x04b0

Malware.AI.3158062536 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Sality.4!c
Elasticmalicious (high confidence)
ALYacGen:Variant.Zusy.337015
CylanceUnsafe
SangforVirus_Suspicious.Win32.Sality.bh
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaVirus:Win32/Sality.986e99d9
CyrenW32/Sality.E.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Sality [Inf]
BitDefenderGen:Variant.Zusy.337015
MicroWorld-eScanGen:Variant.Zusy.337015
TencentMalware.Win32.Gencirc.10ba84e3
Ad-AwareGen:Variant.Zusy.337015
BitDefenderThetaGen:NN.ZexaE.34170.Gq0@auw3c4ib
VIPREVirus.Win32.Sality.atbh (v)
FireEyeGeneric.mg.c08d3446b89d1344
EmsisoftGen:Variant.Zusy.337015 (B)
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Generic.ASMalwS.1F52FA7
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Zusy.337015
Acronissuspicious
MAXmalware (ai score=99)
MalwarebytesMalware.AI.3158062536
RisingTrojan.Generic@ML.93 (RDML:+vHj/FB1fxD6b2YQf7F+gg)
AVGWin32:Sality [Inf]
Paloaltogeneric.ml

How to remove Malware.AI.3158062536?

Malware.AI.3158062536 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment