Malware

Malware.AI.3326741832 removal guide

Malware Removal

The Malware.AI.3326741832 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3326741832 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Authenticode signature is invalid
  • Sniffs keystrokes
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Malware.AI.3326741832?


File Info:

name: EA7EDFC4A770B467FED0.mlw
path: /opt/CAPEv2/storage/binaries/be7b9141e993723f23eb39207c1fe2cdc0f407ddc8dc9574c6f99d693e010962
crc32: 9C777BEA
md5: ea7edfc4a770b467fed0e9cca1ecb9cd
sha1: 2e1ce00d45e371b13ba02576c146a2b3ff8b3463
sha256: be7b9141e993723f23eb39207c1fe2cdc0f407ddc8dc9574c6f99d693e010962
sha512: b2b12838b8e988558305f4c43acd858dcdc51e5ff060aeb1a63753f8a07aa4aaff4b1172ffe0e1416fc5285c24c6332a70768d846814a1e70135e5e87606e3d2
ssdeep: 24576:/bIdC9JaSOhmbSW+SV3A7jDi+3edyp0akutAMhK7Je5YtNh9b:/Eg/ORtm+iQ0a9tThK8qtNh9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11035F402B382C0A2DB5227B2D565D3FE3B29BFA4832855D772D03D6FB8B05815AB5347
sha3_384: aa86e75094e51aa3a6285207775bf53d2559ed8fe4a6d2717949601fc1f5a6a8fc46027fda4e5c7266222e1d9b7e9788
ep_bytes: e8605e0000e989feffffcccccc568b44
timestamp: 2019-04-04 21:13:10

Version Info:

FileDescription:
FileVersion: 1.1.30.03
InternalName:
LegalCopyright:
OriginalFilename:
ProductName:
ProductVersion: 1.1.30.03
Translation: 0x0409 0x04b0

Malware.AI.3326741832 also known as:

LionicTrojan.Win32.AutoHK.l!c
MicroWorld-eScanTrojan.GenericKD.43670906
FireEyeTrojan.GenericKD.43670906
McAfeeArtemis!EA7EDFC4A770
CylanceUnsafe
SangforTrojan.Win32.Tiggre.plock
K7AntiVirusTrojan-Downloader ( 0052d02a1 )
AlibabaTrojanSpy:Win32/AutoHK.cc3e585b
K7GWTrojan-Downloader ( 0052d02a1 )
Cybereasonmalicious.4a770b
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H0CGL21
KasperskyTrojan-Spy.Win32.AutoHK.yg
BitDefenderTrojan.GenericKD.43670906
TencentWin32.Trojan-spy.Autohk.Also
Ad-AwareTrojan.GenericKD.43670906
EmsisoftTrojan.GenericKD.43670906 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.th
SophosMal/Generic-S
GDataTrojan.GenericKD.43670906
JiangminTrojanSpy.AutoHK.ar
WebrootW32.Malware.Gen
AviraTR/Spy.AutoHK.yuejw
MicrosoftPWS:Win32/Zbot!ml
CynetMalicious (score: 99)
VBA32BScope.TrojanSpy.AutoHK
ALYacTrojan.GenericKD.43670906
TACHYONTrojan-Spy/W32.AutoHK.1106432
MalwarebytesMalware.AI.3326741832
IkarusTrojan.Spy.AutoHK
FortinetW32/AutoHK.YG!tr
MaxSecureTrojan.Malware.74278830.susgen

How to remove Malware.AI.3326741832?

Malware.AI.3326741832 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment