Malware

Malware.AI.3324639399 removal tips

Malware Removal

The Malware.AI.3324639399 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3324639399 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3324639399?


File Info:

name: 39F5AE89931C6FF3ACDE.mlw
path: /opt/CAPEv2/storage/binaries/5a9db985cde6f1ab940105e197bcefc76910eef71f55bd66bfd18616472e361f
crc32: 0BC3E6AE
md5: 39f5ae89931c6ff3acde03c523b9ebc0
sha1: c3b8248338aa974e54921cfd89cf2733b13aeb89
sha256: 5a9db985cde6f1ab940105e197bcefc76910eef71f55bd66bfd18616472e361f
sha512: a8a1d120d7d73f0696316ecdea5b18e01b4368dd61e035d7885d07d97f62abcd088dbf1a4afd6eacc0a6e4b57710edb42204d28c20589065ea8c21e8fd13420d
ssdeep: 6144:DzBtqOyMEgS5ydqTpcyLKA0iFjK9y//v2wRVcULW1np:D1fEyY9bLXFG9y///cp3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18A5423ADE6155217D1B02378E5C38860C8EBB5C94D4507AF19B59FCE3E32CE5EC8612E
sha3_384: d49467a88f5f7e841a1a06a40efe4787e3547abb181284ad6bafc801e5cc496e94bedfe55addbf5cd7a92bdf5a143884
ep_bytes: 60e803000000e9eb045d4555c3e80100
timestamp: 2013-02-02 11:21:43

Version Info:

FileVersion: 1.1.0.0
FileDescription: 猪头亮250屏幕录象工具 V1.0
ProductName: 猪头亮250屏幕录象工具 V1.0
ProductVersion: 1.1.0.0
CompanyName: 猪头亮250
LegalCopyright: 猪头亮250屏幕录象工具 V1.0 QQ:11565556 QQ:1323233220
Comments: 猪头亮250屏幕录象工具 V1.0
Translation: 0x0804 0x04b0

Malware.AI.3324639399 also known as:

CyrenCloudW32/OnlineGames.HI.gen!Eldorado
BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.39f5ae89931c6ff3
SkyhighBehavesLike.Win32.Generic.dc
MalwarebytesMalware.AI.3324639399
SangforTrojan.Win32.Agent.Vnia
Cybereasonmalicious.338aa9
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
ClamAVWin.Malware.Qqpass-9876990-0
RisingVirus.Undefined!8.23 (CLOUD)
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
IkarusVirus.Win32.Agent
VaristW32/OnlineGames.HI.gen!Eldorado
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftProgram:Win32/Wacapew.C!ml
XcitiumWorm.Win32.Dropper.RA@1qraug
GDataWin32.Trojan.PSE.1307MSK
GoogleDetected
McAfeeArtemis!39F5AE89931C
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H0CL723
YandexTrojan.Pasta.Gen.1
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/MBRlock.AQ!tr
CrowdStrikewin/grayware_confidence_60% (W)

How to remove Malware.AI.3324639399?

Malware.AI.3324639399 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment