Malware

Malware.AI.3168967956 (file analysis)

Malware Removal

The Malware.AI.3168967956 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3168967956 virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine Malware.AI.3168967956?


File Info:

crc32: 8D1CF2F2
md5: fb356b3bfa56f88c6633d595155c6675
name: FB356B3BFA56F88C6633D595155C6675.mlw
sha1: 1f158a9d874f63301306dc78420f9c8e2a3262bb
sha256: 9045845a99eae314ccebfb3b94d05f3e856373e8b6d62a083a9b96858a5fdf3d
sha512: b09ea8fd76ef189e73c5f5ee11fb87d148c3aa6bd374dabb79ad66a322be6994d7c06ce88c7496043fb85e24d63d2696f6641a801296d70d0d0e38f0028658d6
ssdeep: 24576:y1UHhSZxx1HS7TDoVX+gEZlfk9znUtgucNcX:y1UBS/PHKXAXMkZUV
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: vds.exe
FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 10.0.17134.1
FileDescription: Virtual Disk Service
OriginalFilename: vds.exe
Translation: 0x0409 0x04b0

Malware.AI.3168967956 also known as:

K7AntiVirusVirus ( 00535e4a1 )
Elasticmalicious (high confidence)
DrWebWin64.Expiro.132
CynetMalicious (score: 100)
ALYacWin64.Expiro.Gen.6
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWVirus ( 00535e4a1 )
Cybereasonmalicious.d874f6
CyrenW64/Expiro.AH.gen!Eldorado
ESET-NOD32a variant of Win64/Expiro.CO
APEXMalicious
AvastWin64:Evo-gen [Susp]
ClamAVWin.Virus.Ulise-9879616-0
KasperskyHEUR:Virus.Win64.Expiro.gen
BitDefenderWin64.Expiro.Gen.6
MicroWorld-eScanWin64.Expiro.Gen.6
Ad-AwareWin64.Expiro.Gen.6
SophosML/PE-A + W64/Expiro-AX
TrendMicroVirus.Win64.EXPIRO.MR
FireEyeGeneric.mg.fb356b3bfa56f88c
EmsisoftWin64.Expiro.Gen.6 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Bingoml.akq
AviraTR/Patched.Gen
Antiy-AVLVirus/Win64.Expiro.bs
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitWin64.Expiro.Gen.6
ZoneAlarmHEUR:Virus.Win64.Expiro.gen
GDataWin64.Expiro.Gen.6
MAXmalware (ai score=83)
MalwarebytesMalware.AI.3168967956
TrendMicro-HouseCallVirus.Win64.EXPIRO.MR
IkarusVirus.Win64.Expiro
MaxSecurevirus.win64.expiro.gen
FortinetW64/Expiro.BS
AVGWin64:Evo-gen [Susp]

How to remove Malware.AI.3168967956?

Malware.AI.3168967956 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment