Malware

Should I remove “Malware.AI.3220895324”?

Malware Removal

The Malware.AI.3220895324 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3220895324 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3220895324?


File Info:

name: 20FDFB76F3BBCBF563BC.mlw
path: /opt/CAPEv2/storage/binaries/1a43b6db706573c24e02d47c36950ea7c05b7eb2423bbfa05c322bccccc08724
crc32: 26657F87
md5: 20fdfb76f3bbcbf563bcc230951a10c6
sha1: e4574216224f038daa1127940e8b64f2818ac36f
sha256: 1a43b6db706573c24e02d47c36950ea7c05b7eb2423bbfa05c322bccccc08724
sha512: 97561cd0f22ef0adce98e56888aac6c7cf7fc272c8c4d92c4368adeb78ac434eec6dabc685af341a37372975738e1c47aa62fb4526338c1d55fe90736b7bf1cb
ssdeep: 3072:Yf2ZsSUhlA0ZBoWRIdNFWB4fyXN4+pQPSDCNENm2eK7mnoUSSBAX3KrOjDRGY6lb:Sx3lA0ZBoWENFw2tPBENm2eK7mnoUSWX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T152F37D9123C15039F1FB453178B94922897ABC7197B688CBD7980A0FA5703D2F739BA7
sha3_384: 644b3729c16e3b9a86878cc83bb2d43eeaefd148ab08ca38f23fbfc8e76ca7f29e0326513978c21cf1aea81be7a391d1
ep_bytes: 926435cad4a90971100175e563bea35c
timestamp: 2017-04-05 22:33:08

Version Info:

0: [No Data]

Malware.AI.3220895324 also known as:

BkavW32.AIDetectMalware
CyrenCloudRisk/WIN_PE.1a43b6db!Threatlookup
LionicTrojan.Win32.Generic.4!c
FireEyeGeneric.mg.20fdfb76f3bbcbf5
McAfeeRDN/Generic.dx
MalwarebytesMalware.AI.3220895324
SangforTrojan.Win32.Agent.V97d
K7AntiVirusTrojan ( 004bcce41 )
AlibabaTrojan:Application/HckPk.0c669dd3
K7GWTrojan ( 004bcce41 )
BitDefenderThetaGen:NN.ZexaCO.36318.kmW@a4HTm@o
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
CynetMalicious (score: 100)
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminesuspicious.low.ml.score
SophosMal/HckPk-A
XcitiumPacked.Win32.MUPX.Gen@24tbus
GoogleDetected
AhnLab-V3Malware/Win.Generic.C5100027
TrendMicro-HouseCallTROJ_GEN.R002H06EN23
RisingTrojan.Generic@AI.100 (RDML:uwNMTPE5I3hUZDhZxmOHuQ)
SentinelOneStatic AI – Suspicious PE
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Malware.AI.3220895324?

Malware.AI.3220895324 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment