Malware

Malware.AI.3477104111 removal guide

Malware Removal

The Malware.AI.3477104111 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3477104111 virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3477104111?


File Info:

name: B6A4FA75C53E0D1434A3.mlw
path: /opt/CAPEv2/storage/binaries/a1d7d462c4d725d9175cdee0b77d3d569d5c25f1314e536e672ac12d61332e97
crc32: 4920FE7A
md5: b6a4fa75c53e0d1434a3f2dba6f6eab0
sha1: 8996c37e898e870cae4117380dc19e786acca05c
sha256: a1d7d462c4d725d9175cdee0b77d3d569d5c25f1314e536e672ac12d61332e97
sha512: 4e316ffdb6165b8185052635aa46169a071cd6bd15da7a6f6945a3501c908b551e3c0570d2a6100bc610e3a17848b2db5e77f5ef19486089f24d57ba1663185a
ssdeep: 6144:ydwQ3lhve8wEvv1sKgLk61cHWDjIY3UQI1QHWt0bAUw/8wEvv1sKgLk61NhVU8yP:ydw2lhvP342fY3bI2C234lSIuB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19EC4CF5332509632D2F63DBD8D0AA660E93BFA102E25790A63DE2F0EDD351617E5D383
sha3_384: c01e545ef34d358a58f67cd05db34b0f2cfe0fa53cac09c76496cf8878d49a3e4d6269fb8b7bf13ec514d168a2ad2650
ep_bytes: 558bec83c4f4b85c5b4800e8e0fef7ff
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: Cafegikepec
FileDescription: Big
FileVersion: 1.2.39.43
InternalName: cenatof
LegalCopyright: Copyright © All Rights Reserved
LegalTrademarks:
OriginalFilename: cenatof.exe
ProductName: Tutotep Pebe Pomotobu
ProductVersion: 2.1.29.13

Malware.AI.3477104111 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanAdware.DealPly.1.Gen
FireEyeGeneric.mg.b6a4fa75c53e0d14
McAfeeRDN/Generic PUP.z
CylanceUnsafe
K7AntiVirusAdware ( 00529a881 )
K7GWAdware ( 00529a881 )
Cybereasonmalicious.5c53e0
SymantecSMG.Heur!gen
ESET-NOD32a variant of Win32/DealPly.RJ potentially unwanted
APEXMalicious
Paloaltogeneric.ml
Kasperskynot-a-virus:UDS:AdWare.Win32.DealPly
BitDefenderAdware.DealPly.1.Gen
SUPERAntiSpywarePUP.DealPly/Variant
AvastWin32:Adware-gen [Adw]
Ad-AwareAdware.DealPly.1.Gen
EmsisoftAdware.DealPly.1.Gen (B)
ZillyaAdware.DealPly.Win32.472217
TrendMicroTROJ_GEN.R002C0OJG21
McAfee-GW-EditionBehavesLike.Win32.DealPly.hh
SophosGeneric PUA IJ (PUA)
GDataAdware.DealPly.1.Gen
AviraHEUR/AGEN.1109273
MAXmalware (ai score=65)
Antiy-AVLTrojan/Generic.ASMalwS.1E74F19
GridinsoftRansom.Win32.Gen.sa
ViRobotAdware.Dealply.595968.YA
MicrosoftProgram:Win32/Wacapew.C!ml
CynetMalicious (score: 99)
Acronissuspicious
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.3477104111
TrendMicro-HouseCallTROJ_GEN.R002C0OJG21
RisingAdware.DealPly!1.AA42 (CLASSIC)
YandexRiskware.Agent!b5tCcrO4IPg
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/DealFly
BitDefenderThetaAI:Packer.3BAEF64D19
AVGWin32:Adware-gen [Adw]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.3477104111?

Malware.AI.3477104111 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment