Malware

Malware.AI.3292923156 information

Malware Removal

The Malware.AI.3292923156 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3292923156 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.3292923156?


File Info:

name: D13FBF9DB6B31562FA9A.mlw
path: /opt/CAPEv2/storage/binaries/47133dccc209b4823abe7202a999442b3b141f85f87e780751f0c5e0c1eadaee
crc32: 31BD4952
md5: d13fbf9db6b31562fa9aae9362934726
sha1: 24f565e63ab74e92eb982a058464eec624d5f1a5
sha256: 47133dccc209b4823abe7202a999442b3b141f85f87e780751f0c5e0c1eadaee
sha512: 0534622dcea39f5afa7e012a33772344abc269a119f54b71e9212dee9696952017ebdca1e16c2273a8526e8715d1bd6fa4be11d8808f5da058eed57861258cea
ssdeep: 768:puqV+BrKWO7jdYaEuARZ33WCOnbq667m5C7YO5tbI+BMnNwX2gT:AOjd0Z33WCOnHom5CEOoaMn3a
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T17C03BFE0D93E3B3AF7BBCA3B86BEB509D20912B77307BA9D4820504205F52E19E0151F
sha3_384: 30545a6498bc40e1025d16f978f68cad4ca004ad86435d49a638310200a7fe2f0272cc95264fc5d6912b7480daf3d033
ep_bytes: 807c2408010f85b901000060be009000
timestamp: 2011-03-16 14:18:50

Version Info:

0: [No Data]

Malware.AI.3292923156 also known as:

BkavW32.FamVT.Kykymber.P.Trojan
Elasticmalicious (moderate confidence)
DrWebTrojan.PWS.Qq.5
MicroWorld-eScanTrojan.PWS.Onlinegames.KEGA
ClamAVWin.Spyware.82942-2
FireEyeGeneric.mg.d13fbf9db6b31562
CAT-QuickHealTrojan.OnLineGames.gen
SkyhighBehavesLike.Win32.PWSOnlineGames.nh
ALYacTrojan.PWS.Onlinegames.KEGA
Cylanceunsafe
ZillyaTrojan.Kykymber.Win32.1544
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0037c4831 )
AlibabaTrojanPSW:Win32/Kykymber.fdf0baba
K7GWTrojan ( 0037c4831 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.E437D7841F
SymantecInfostealer.Gampass
ESET-NOD32Win32/PSW.Kykymber.AA
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-PSW.Win32.Kykymber.mdq
BitDefenderTrojan.PWS.Onlinegames.KEGA
NANO-AntivirusTrojan.Win32.OnLineGames.bkxdd
AvastWin32:Malware-gen
TencentTrojan.PSW.Win32.MiBao.a
EmsisoftTrojan.PWS.Onlinegames.KEGA (B)
F-SecureDropper.DR/PSW.Kykymber.JZ
BaiduWin32.Trojan-PSW.OLGames.j
VIPRETrojan.PWS.Onlinegames.KEGA
TrendMicroTSPY_ONGAME.SMK
SophosMal/PWS-GZ
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PSW.Kykymber.ali
WebrootW32.Trojan.Gen
GoogleDetected
AviraDR/PSW.Kykymber.JZ
Antiy-AVLTrojan[PSW]/Win32.Kykymber.gen
Kingsoftmalware.kb.b.949
MicrosoftPWS:Win32/OnLineGames
XcitiumTrojWare.Win32.PSW.GamePass.F@35ift2
ArcabitTrojan.PWS.Onlinegames.KEGA
ViRobotTrojan.Win32.A.PSW-Kykymber.60060[UPX]
ZoneAlarmTrojan-PSW.Win32.Kykymber.mdq
GDataWin32.Trojan-Spy.OnlineGames.N
VaristW32/OnlineGames.FL.gen!Eldorado
AhnLab-V3Win-Trojan/OnlineGameHack45.Gen
Acronissuspicious
McAfeePWS-OnlineGames.ke
MAXmalware (ai score=100)
VBA32BScope.TrojanPSW.QQPass
MalwarebytesMalware.AI.3292923156
PandaTrj/Kykymber.A
TrendMicro-HouseCallTSPY_ONGAME.SMK
RisingTrojan.PSW.Win32.OnlineGame.bdi (CLASSIC)
YandexTrojan.GenAsa!8iF9VihfZfg
IkarusTrojan-PWS.Win32.Kykymber
MaxSecurenot-a-virus-PSW-OnlineGames.Gen
FortinetW32/Onlinegames.XQB!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.3292923156?

Malware.AI.3292923156 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment