Malware

Malware.AI.3222717889 removal instruction

Malware Removal

The Malware.AI.3222717889 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3222717889 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Korean
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3222717889?


File Info:

name: B04665D9B55CEF485130.mlw
path: /opt/CAPEv2/storage/binaries/ec34f75aa3b315a027bf48bc352737853fc9a039aa7afbea79ce865bffe0f92c
crc32: 475B35E9
md5: b04665d9b55cef48513023b6f798b4b9
sha1: 7272073f97bda25e9c1eb0ef66579ed18462c589
sha256: ec34f75aa3b315a027bf48bc352737853fc9a039aa7afbea79ce865bffe0f92c
sha512: edfecfa9cc30d76962872b5083d397d9a5440e8df0d4a6fdbfd7565579472f15af60c8f72b4c958652113afba8667eedfa04f98e486672d73be9976c3b2681d6
ssdeep: 12288:RSlYAh3TPBzRCOiIsuSlYAh3T/BzRCOiIst:EYM3TB4YM3Tx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A794BE0AB75AD942D62946704EA7C3B61B387C326E015F17738CBB2D3DF3192789172A
sha3_384: 803474701ac8b935db864379bcde6f4474ab3e8035f94d8a77f860d7495e320bf9fd1f68d8e7bdcb22f946a6eff240e5
ep_bytes: 682cee4200e8eeffffff000000000000
timestamp: 1996-08-02 03:49:59

Version Info:

Translation: 0x0412 0x04b0
CompanyName: 주식회사 은혼
ProductName: GameRegRun
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Reg
OriginalFilename: Reg.exe

Malware.AI.3222717889 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Swisyn.mot4
MicroWorld-eScanGen:Variant.Barys.1548
FireEyeGeneric.mg.b04665d9b55cef48
McAfeeGenericR-EBN!B04665D9B55C
CylanceUnsafe
SangforTrojan.Win32.Sabsik.FL
BitDefenderGen:Variant.Barys.1548
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.34182.Bq0@aiTh7unG
VirITTrojan.Win32.Click2.CCNN
CyrenW32/Virut.AN.gen!Eldorado
SymantecW32.Virut.CF
ESET-NOD32Win32/Virut.NBP
BaiduWin32.Virus.Virut.gen
TrendMicro-HouseCallTROJ_GEN.R002C0OB322
Paloaltogeneric.ml
ClamAVWin.Dropper.Zusy-6816228-0
AlibabaVirus:Win32/Virut.77c7205c
NANO-AntivirusTrojan.Win32.Clicker.ejchtx
APEXMalicious
RisingVirus.Virut!8.44 (CLOUD)
SophosMal/Generic-S
ComodoVirus.Win32.Virut.CE@5jedjj
DrWebTrojan.Click2.36855
TrendMicroTROJ_GEN.R002C0OB322
McAfee-GW-EditionBehavesLike.Win32.VBObfus.gm
EmsisoftGen:Variant.Barys.1548 (B)
IkarusTrojan.Crypt
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=86)
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Barys.1548
CynetMalicious (score: 100)
VBA32TScope.Trojan.VB
ALYacGen:Variant.Barys.1548
MalwarebytesMalware.AI.3222717889
PandaW32/Sality.AO
TencentVirus.Win32.Virut.ug
YandexTrojan.GenAsa!NHFpKdOvF2Q
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.F
AVGWin32:Vitro [Inf]
Cybereasonmalicious.9b55ce
AvastWin32:Vitro [Inf]

How to remove Malware.AI.3222717889?

Malware.AI.3222717889 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment