Malware

Malware.AI.3205054705 removal

Malware Removal

The Malware.AI.3205054705 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3205054705 virus can do?

  • A process attempted to delay the analysis task.
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

Related domains:

wpad.local-net
meron.kanoga-apps.com

How to determine Malware.AI.3205054705?


File Info:

name: 3FAF1EE611DD9ACA0B88.mlw
path: /opt/CAPEv2/storage/binaries/7acd7d24cf7b26c2a094cb6fb6aa89b63c1461baf1f709dcc93be5d8e88739cb
crc32: 9154D309
md5: 3faf1ee611dd9aca0b884e4be5d05773
sha1: 0c8202a609f9fb9e721440af748cd88b3ac7f3bc
sha256: 7acd7d24cf7b26c2a094cb6fb6aa89b63c1461baf1f709dcc93be5d8e88739cb
sha512: 9e2e70b2f466c140cd729987f5288905bcba92eb044ef4c0c0c85b854f437bb6d28e89e3988b27059579f234f28a3f7dcdf0bbe1ebad96bafa0d1070162edc06
ssdeep: 3072:of1BDZ0kVB67Duw9AMcbxE1H9PtIQofRTwD0yJTxJ0yH:o9X0GjQHptIQofRTwDRH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B964BF3B9660DCB3C79609300CBA55AEDBA457982394F70F079C29B77F432C2AA4F156
sha3_384: b150c86b729785ce4cccacebca42e17dfb5a86eda82f66b6d969aa49dea76fd8e79b7e82b53795df52736809a847ba12
ep_bytes: 81ec8401000053565733db6801800000
timestamp: 2020-08-01 02:44:50

Version Info:

FileVersion: 2.2.35.488
ProductVersion: 2.2.40.212
Translation: 0x0409 0x04e4

Malware.AI.3205054705 also known as:

LionicTrojan.Win32.Adload.a!c
MicroWorld-eScanTrojan.Generic.31219866
FireEyeTrojan.Generic.31219866
McAfeeArtemis!3FAF1EE611DD
ZillyaDownloader.Adload.Win32.112068
AlibabaAdWare:Win32/AdLoad.23d1c3fb
CyrenW32/Adload.GF.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32NSIS/TrojanDownloader.Agent.NZR
APEXMalicious
KasperskyHEUR:Trojan-Downloader.Win32.Adload.gen
BitDefenderTrojan.Generic.31219866
AvastNSIS:DropperX-gen [Drp]
Ad-AwareTrojan.Generic.31219866
SophosMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.Generic.fz
EmsisoftTrojan.Generic.31219866 (B)
GDataTrojan.Generic.31219866
AviraTR/Downloader.qtrfx
MAXmalware (ai score=82)
GridinsoftRansom.Win32.Sabsik.sa
ViRobotTrojan.Win32.Z.Agent.325429
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 99)
AhnLab-V3Dropper/Win.DropperX-gen.C4785887
ALYacTrojan.Generic.31219866
VBA32suspected of Trojan.Downloader.gen
MalwarebytesMalware.AI.3205054705
TrendMicro-HouseCallTROJ_GEN.R06CH0DKL21
MaxSecureTrojan.Malware.6991189.susgen
FortinetNSIS/Agent.NZR!tr.dldr
AVGNSIS:DropperX-gen [Drp]

How to remove Malware.AI.3205054705?

Malware.AI.3205054705 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment