Malware

Malware.AI.3238406008 removal

Malware Removal

The Malware.AI.3238406008 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3238406008 virus can do?

  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests

Related domains:

www.sgvpi.com
redirector.gvt1.com
r8—sn-bpb5oxu-3c2y.gvt1.com

How to determine Malware.AI.3238406008?


File Info:

crc32: F59EF880
md5: 0b2c120a856fc822e21a4e6d240114b1
name: 0B2C120A856FC822E21A4E6D240114B1.mlw
sha1: 7872ff4aa2c19bb9ac1c04d16670ae1b8816729b
sha256: 26c99c704ead836140e0741b634671e2ef21827b6e262e26f897c0e5285eab99
sha512: 1fb36c6b1b96b5906cea704269ca9d0826a13c2ebdc99acd1a9b3b0e359a7c8edfcf6dffe2c35b1d8f8146fd00ff91d99aea98a8b83b178c8585bbc04f0adfb6
ssdeep: 12288:31QVUKB8YQtmDc33pFaQcSqJWtUFxoupw+kxNVETYoOW/Lkj8kv71yqKrvTJqx6q:lQSQRcHH3cvwNvETsWDkBTKlg9XAlANP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) x5355x4f4dx540dx79f0 2020
InternalName: aardiox5de5x7a0b3
FileVersion: 0.0.0.9
CompanyName: x5355x4f4dx540dx79f0
ProductName: aardiox5de5x7a0b3
ProductVersion: 0.0.0.9
FileDescription: aardiox5de5x7a0b3
OriginalFilename: aardiox5de5x7a0b3.exe
Translation: 0x0009 0x04b0

Malware.AI.3238406008 also known as:

K7AntiVirusTrojan ( 00577fe81 )
Elasticmalicious (high confidence)
ClamAVWin.Malware.Aauto-9839278-0
McAfeeGenericRXAA-AA!0B2C120A856F
CylanceUnsafe
BitDefenderGen:Variant.Graftor.629085
K7GWTrojan ( 00577fe81 )
Cybereasonmalicious.a856fc
ESET-NOD32a variant of Win32/Packed.AAuto.B suspicious
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Graftor.629085
Ad-AwareGen:Variant.Graftor.629085
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34684.pr0@aeNMbHfG
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.0b2c120a856fc822
EmsisoftGen:Variant.Graftor.629085 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_61%
MicrosoftTrojan:Win32/Tnega!ml
ArcabitTrojan.Graftor.D9995D
GDataGen:Variant.Graftor.629085
MAXmalware (ai score=89)
MalwarebytesMalware.AI.3238406008
RisingMalware.Heuristic!ET#98% (RDMK:cmRtazq9mAh93vYqFbLXeAEQN/K0)
YandexTrojan.GenAsa!BlW5PwM8JpE

How to remove Malware.AI.3238406008?

Malware.AI.3238406008 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment