Malware

Malware.AI.3447001168 removal guide

Malware Removal

The Malware.AI.3447001168 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3447001168 virus can do?

  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Deletes its original binary from disk

How to determine Malware.AI.3447001168?


File Info:

name: A915A81593586BE9C14C.mlw
path: /opt/CAPEv2/storage/binaries/7a1adb982b2e13693e6403f1b55a13dd09ad300d9138fc442d72a0e756334020
crc32: 43998AD9
md5: a915a81593586be9c14c06f3b159fc79
sha1: 5e342888a65a1288516f640d0c9be04930ce50db
sha256: 7a1adb982b2e13693e6403f1b55a13dd09ad300d9138fc442d72a0e756334020
sha512: 0cdd5d7261bdb14f82713a9641a54009ebe17bab75d1690f5d6e4490aff697021bd9771a9bfd45a7de194ddc92278b571745f1df2010f823d421a614861c39f3
ssdeep: 768:eApQr0GvdFJI34qGxusOy9Rp1pLeAxoeY:eAapJlQsh7pWeY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T161E2E817A2308F2CCA388334051EFAE00EB25E4D9A59C40FDA177CB4D9B91D2E72DB19
sha3_384: d4fd81bda35b06934d1adbeb0024e1e2c6b95f2d9fd91feb91268294764c59f961ec30ec0c2ea3fec70241502e5e51cf
ep_bytes: 558bec6aff6888204000685018400064
timestamp: 2006-07-02 14:19:05

Version Info:

0: [No Data]

Malware.AI.3447001168 also known as:

LionicTrojan.Win32.Loan.a!c
Elasticmalicious (high confidence)
DrWebTrojan.Sdter.40
MicroWorld-eScanGen:Trojan.Heur.cqY@H9kNqkgb
FireEyeGeneric.mg.a915a81593586be9
McAfeeGenericRXDN-CE!A915A8159358
CylanceUnsafe
ZillyaDownloader.Loan.Win32.2
SangforTrojan.Win32.Loan.a
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojanDownloader:Win32/Generic.fc3050b7
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.593586
BitDefenderThetaAI:Packer.4C88B8F61C
VirITTrojan.Win32.Loan.A
CyrenW32/Downloader.ULNT-8355
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002C0OB622
Paloaltogeneric.ml
ClamAVWin.Downloader.20341-1
KasperskyTrojan-Downloader.Win32.Loan.a
BitDefenderGen:Trojan.Heur.cqY@H9kNqkgb
NANO-AntivirusTrojan.Win32.Loan.wswt
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.10b54913
Ad-AwareGen:Trojan.Heur.cqY@H9kNqkgb
EmsisoftGen:Trojan.Heur.cqY@H9kNqkgb (B)
ComodoTrojWare.Win32.Downloader.Loan.~A@5eal0
TrendMicroTROJ_GEN.R002C0OB622
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.nm
SophosML/PE-A + Mal/Generic-E
GDataGen:Trojan.Heur.cqY@H9kNqkgb
JiangminTrojanDownloader.Loan.h
AviraTR/Crypt.XDR.Gen
MAXmalware (ai score=84)
Antiy-AVLTrojan/Generic.ASMalwS.2C8F3
GridinsoftRansom.Win32.Zbot.sa
ViRobotTrojan.Win32.Downloader.2356269
ZoneAlarmTrojan-Downloader.Win32.Loan.a
MicrosoftTrojan:Win32/Woreflint.A!cl
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win32.OnlineGameHack.R48689
VBA32BScope.TrojanDownloader.Loan
ALYacGen:Trojan.Heur.cqY@H9kNqkgb
MalwarebytesMalware.AI.3447001168
APEXMalicious
RisingDropper.Agent!8.2F (RDMK:cmRtazpVV2ukUtMC25zAmjMyG/iD)
YandexTrojan.DL.Loan!A70NC6M03ss
IkarusTrojan-Downloader.Win32.Loan
FortinetW32/Generic.AC.25CAAE!tr
AVGWin32:Malware-gen
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.3447001168?

Malware.AI.3447001168 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment