Malware

Malware.AI.3385696161 removal guide

Malware Removal

The Malware.AI.3385696161 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3385696161 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3385696161?


File Info:

name: 9BF1A5CB5B81E7652F72.mlw
path: /opt/CAPEv2/storage/binaries/636e7a9cdaaef762e57485b73f3a1e9d06882bdcde562980f86a08517ef476ad
crc32: BAA2A79B
md5: 9bf1a5cb5b81e7652f72f83b6cbf43c7
sha1: ec849bb70421767edd640001daa073eafb2beb7e
sha256: 636e7a9cdaaef762e57485b73f3a1e9d06882bdcde562980f86a08517ef476ad
sha512: df00d6778ada900850250cb609e943ac23ccf24d108005f31f951e7a68a33ced45c869d50e570d4c9515a384a3347735c084071f8acbbf5d2c31f9fcfe07f209
ssdeep: 24576:sH4N+5oLL0F3sEIcKBJK8BpYyhGsOa/IDQyxUM8a2eZjc:sH4N3UFxIPA8ByyhTwM/M/XZw
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T17A355A52FAA390B2DC4B01B25646F26F5B21E611C824DECBFADC0D5DEF334A1661D362
sha3_384: 657b8865235c39a9f3c00c90311db771df99e8af5ad0432cabb74ba75b9b086c37120e5d697af85849e96e00abf8eaf7
ep_bytes: 5589e583ec18c7042401000000ff15b0
timestamp: 2009-12-04 13:35:59

Version Info:

0: [No Data]

Malware.AI.3385696161 also known as:

LionicVirus.Win32.Virut.n!c
MicroWorld-eScanGen:Malware.Heur.1.!copidmbe!.dHW@bun4upb
FireEyeGen:Malware.Heur.1.!copidmbe!.dHW@bun4upb
ALYacGen:Malware.Heur.1.!copidmbe!.dHW@bun4upb
CylanceUnsafe
VIPREVirus.Win32.Virut.ce.6 (v)
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaVirus:Win32/Virut.87b75a9b
CyrenW32/Virut.AM.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderGen:Malware.Heur.1.!copidmbe!.dHW@bun4upb
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
AvastWin32:Patched-AJW [Trj]
TencentVirus.Win32.Virut.ua
Ad-AwareGen:Malware.Heur.1.!copidmbe!.dHW@bun4upb
EmsisoftGen:Malware.Heur.1.!copidmbe!.dHW@bun4upb (B)
McAfee-GW-EditionBehavesLike.Win32.Virus.th
SophosGeneric PUA OM (PUA)
IkarusVirus.Win32.Virut
GDataGen:Malware.Heur.1.!copidmbe!.dHW@bun4upb
JiangminWin32/Virut.bv
AviraW32/Patched.Ren.Gen9
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
McAfeeArtemis!9BF1A5CB5B81
MAXmalware (ai score=88)
MalwarebytesMalware.AI.3385696161
TrendMicro-HouseCallTROJ_GEN.R002H0CL121
SentinelOneStatic AI – Suspicious PE
FortinetW32/PossibleThreat
BitDefenderThetaGen:NN.ZexaF.34062.dHW@aun4upb
AVGWin32:Patched-AJW [Trj]
Cybereasonmalicious.b5b81e

How to remove Malware.AI.3385696161?

Malware.AI.3385696161 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment