Malware

Should I remove “Malware.AI.3395505539”?

Malware Removal

The Malware.AI.3395505539 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3395505539 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3395505539?


File Info:

name: B1406EFC8C819EA5FE7A.mlw
path: /opt/CAPEv2/storage/binaries/047b9ac5c8aab7fb1091ea4bc757a855a5ed1b61ccb0d3bc841aab9b0990921a
crc32: DC53C154
md5: b1406efc8c819ea5fe7ab69467220f1e
sha1: aaa015da8e41f39bcc8cffc4d0d4f5b004ddf0e7
sha256: 047b9ac5c8aab7fb1091ea4bc757a855a5ed1b61ccb0d3bc841aab9b0990921a
sha512: 7c73f04bcacf491908cd483b01c8b8af0ecf9da6864ab41afb2a82a85ff11e70381829a41f17207bacd216ebb95ea14dc152543e29f45fe89e30b4bfd8e408d1
ssdeep: 96:mBJYtOvLGaEZ6wAnQWRRUZ2CyYa4AN1FeAHsS9UGNbqmk46xmDyfdHqKRRXquFAd:mBJYtfZmQWRRQzI5U+rkONIHAGCng+X
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ADD2783C5ED41573E3B78AB6C5F651CBFA70B4233A029C5E50AB03810D13F96ADA1A1E
sha3_384: e8d92bb680f6d375daf04d127f4dd28c690519a53a1f1ac9363a7c56c2d30c5bf6bd4ba35e2570fc1f3dfe0bd67a8496
ep_bytes: 81ec3408000053555633f65756897424
timestamp: 2014-05-13 06:44:14

Version Info:

0: [No Data]

Malware.AI.3395505539 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebTrojan.DownLoad3.33216
MicroWorld-eScanTrojan.Ppatre.Gen.1
ClamAVWin.Dropper.Upatre-9987660-0
McAfeeGenericRXVC-VH!B1406EFC8C81
MalwarebytesMalware.AI.3395505539
SangforTrojan.Win32.Save.a
Cybereasonmalicious.c8c819
BitDefenderThetaGen:NN.ZexaF.36164.buX@amb1nboi
VirITTrojan.Win32.Upatre.AS
CyrenW32/S-654ac031!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32Win32/TrojanDownloader.Waski.E
APEXMalicious
CynetMalicious (score: 100)
KasperskyVHO:Trojan-Spy.Win32.Zbot.gen
BitDefenderTrojan.Ppatre.Gen.1
NANO-AntivirusTrojan.Win32.DownLoad3.gaapvu
AvastWin32:Evo-gen [Trj]
TencentTrojan-Downloader.Win32.Upatre.we
EmsisoftTrojan.Ppatre.Gen.1 (B)
F-SecureHeuristic.HEUR/AGEN.1315817
VIPRETrojan.Ppatre.Gen.1
TrendMicroTROJ_UPATRE.SM37
McAfee-GW-EditionBehavesLike.Win32.Generic.mz
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.b1406efc8c819ea5
SophosMal/EncPk-ACO
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1AI5G4B
JiangminTrojanSpy.Zbot.ffhh
AviraHEUR/AGEN.1315817
MAXmalware (ai score=85)
Antiy-AVLTrojan/Win32.Waski.a
XcitiumTrojWare.Win32.TrojanDownloader.Waski.ADW@8mzp93
ArcabitTrojan.Ppatre.Gen.1
ZoneAlarmVHO:Trojan-Spy.Win32.Zbot.gen
MicrosoftTrojanDownloader:Win32/Upatre.AA
GoogleDetected
AhnLab-V3Trojan/Win32.Upatre.R158192
VBA32SScope.Trojan-Downloader.1454
ALYacTrojan.Ppatre.Gen.1
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_UPATRE.SM37
RisingDownloader.Upatre!8.B5 (TFE:3:JrFJf4jCRlD)
YandexTrojan.GenAsa!zfalv5UzsQI
IkarusTrojan-Downloader.Win32.Waski
MaxSecureTrojan.Upatre.Gen
FortinetW32/Waski.B!tr.dldr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.3395505539?

Malware.AI.3395505539 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment