Malware

Malware.AI.3215492460 removal

Malware Removal

The Malware.AI.3215492460 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3215492460 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.3215492460?


File Info:

name: C9D51CAB0AC3B23ACB37.mlw
path: /opt/CAPEv2/storage/binaries/2b151f2fa0c5a9f4db4963abb5855cc2b369e489227d7b0fca52a14485ee5428
crc32: A7E6411D
md5: c9d51cab0ac3b23acb37e2f26e6968b1
sha1: 6dc43823456b4547f839f83365418a08a16dbf11
sha256: 2b151f2fa0c5a9f4db4963abb5855cc2b369e489227d7b0fca52a14485ee5428
sha512: 05845a640fbe38c85dc034908cf1310874bd71bc1b52daf0c683001ff6a768e3b8a3a98942ac89bb1bb47486d96a5082c8089ad3c3af8f63e1d8fd9e12203433
ssdeep: 49152:WHQDIpbPfrm4TWQDIpbPfrm4TNegohM9IymH:WgIpjT5IpjTNmhW
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17E8501006FB44140FAAA17FA55F78540B338BD4AA431FB8E64A93C9E29F3E91CD11F59
sha3_384: f91da607d212d80d77875559e2e599d9581c28879be4e2838e18a509d52837caddcddd2df1c092d079ef954080329edc
ep_bytes: ff25002040005589e5578b7d106a0158
timestamp: 2080-08-08 10:11:54

Version Info:

Translation: 0x0000 0x04b0
Comments: Client Launcher
CompanyName: XButtonn
FileDescription: Launcher
FileVersion: 1.0.0.0
InternalName: Launcher.exe
LegalCopyright: Copyright © 2021
LegalTrademarks: XButtonn
OriginalFilename: Launcher.exe
ProductName: Launcher
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.3215492460 also known as:

LionicTrojan.Win32.Heracles.4!c
MicroWorld-eScanGen:Variant.MSILHeracles.22413
McAfeeArtemis!C9D51CAB0AC3
CylanceUnsafe
SangforSuspicious.Win32.MSILHeracles.22413
K7AntiVirusHacktool ( 005806f41 )
AlibabaTrojan:MSIL/Generic.746970bf
K7GWHacktool ( 005806f41 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/HackTool.BruteForce.AJK
TrendMicro-HouseCallTROJ_GEN.R002C0WKQ21
KasperskyHEUR:HackTool.MSIL.BruteForce.gen
BitDefenderGen:Variant.MSILHeracles.22413
AvastWin32:TrojanX-gen [Trj]
TencentMsil.Trojan.Msilheracles.Tbsf
Ad-AwareGen:Variant.MSILHeracles.22413
EmsisoftGen:Variant.MSILHeracles.22413 (B)
TrendMicroTROJ_GEN.R002C0WKQ21
McAfee-GW-EditionArtemis!PUP
FireEyeGen:Variant.MSILHeracles.22413
SophosGeneric PUA GN (PUA)
GDataGen:Variant.MSILHeracles.22413
MaxSecureTrojan.Malware.300983.susgen
Antiy-AVLTrojan/Generic.ASMalwS.34CDE1B
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftProgram:Win32/Wacapew.C!ml
ALYacGen:Variant.MSILHeracles.22413
MAXmalware (ai score=83)
MalwarebytesMalware.AI.3215492460
APEXMalicious
YandexRiskware.BruteForce!Uk8ryxBMRHU
SentinelOneStatic AI – Suspicious PE
FortinetMSIL/BruteForce.AJK!tr
AVGWin32:TrojanX-gen [Trj]

How to remove Malware.AI.3215492460?

Malware.AI.3215492460 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment