Malware

How to remove “Malware.AI.3491300584”?

Malware Removal

The Malware.AI.3491300584 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3491300584 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Malware.AI.3491300584?


File Info:

name: E74E00ABEFBD51FF73A2.mlw
path: /opt/CAPEv2/storage/binaries/b20867baa64dbad081ee5d58b27aca07645f404a9fd015d786e4362caf5c6ab0
crc32: 0EF370CD
md5: e74e00abefbd51ff73a2452ae2048e91
sha1: 8a80d00ebe32db93ac97499c1bc77cbfa744b2d9
sha256: b20867baa64dbad081ee5d58b27aca07645f404a9fd015d786e4362caf5c6ab0
sha512: 8bcc532ea05fd6c0d34ccc58aee051954a3190c9dc131d1db6bf536668f4bb877ccf9e7e8a69010021e80927e4d6db48858d6003ad828c0da8336e125735ce35
ssdeep: 3072:oo3e8bGBDdGeVW6FufgUr1AzBgxsjMjpTBfNEeRM8P:Ve82x5FuxwBgxsspTBCeRr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A0C34902B6C24AE2CA28197048DDA7BDC661E9291F165BD3734CFF1E287B5C0B5361DE
sha3_384: 1929bed977270a84593a8dfc3db48daaad5c2452bc9a17b5a140736200ec3a37f7b6ebeb1d83e9fd26f5d7a01acb88c7
ep_bytes: 558bec6aff6860824100687a0a410064
timestamp: 2009-07-17 11:50:51

Version Info:

CompanyName:
FileDescription: IEMonitor Microsoft 基础类应用程序
FileVersion: 1, 0, 0, 1
InternalName: IEMonitor
LegalCopyright: 版权所有 (C) 2007
LegalTrademarks:
OriginalFilename: IEMonitor.EXE
ProductName: IEMonitor 应用程序
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Malware.AI.3491300584 also known as:

LionicTrojan.Win32.Agent.m!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Symmi.63591
FireEyeGeneric.mg.e74e00abefbd51ff
CAT-QuickHealBackdoor.Figuz.12263
McAfeegeneric!bg
MalwarebytesMalware.AI.3491300584
ZillyaBackdoor.Agent.Win32.59027
SangforBackdoor.Win32.Figuz.do
K7AntiVirusTrojan ( 000fa1c11 )
AlibabaBackdoor:Win32/Figuz.37f2ac7b
K7GWTrojan ( 000fa1c11 )
Cybereasonmalicious.befbd5
ArcabitTrojan.Symmi.DF867
BitDefenderThetaGen:NN.ZexaF.36196.hq0@aatOaamb
CyrenW32/Backdoor.YAEQ-3763
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.OAS
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Ransomware.Cryptor-9867582-0
KasperskyBackdoor.Win32.Figuz.do
BitDefenderGen:Variant.Symmi.63591
NANO-AntivirusTrojan.Win32.Agent.bcbds
AvastWin32:Agent-ACQC [Trj]
TencentWin32.Backdoor.Figuz.Aplw
EmsisoftGen:Variant.Symmi.63591 (B)
BaiduWin32.Trojan.Agent.fr
F-SecureTrojan.TR/Agent.awqn.2.A
DrWebBackDoor.Spy.46
VIPREGen:Variant.Symmi.63591
McAfee-GW-Editiongeneric!bg
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
IkarusTrojan-Dropper.Agent
JiangminBackdoor/Agent.bujj
AviraTR/Agent.awqn.2.A
Antiy-AVLTrojan/Win32.TSGeneric
XcitiumTrojWare.Win32.Agent.awqn_2_A2@1me76h
MicrosoftTrojan:Win32/Skeeyah.A!rfn
ViRobotBackdoor.Win32.Agent.126976.C
ZoneAlarmBackdoor.Win32.Figuz.do
GDataGen:Variant.Symmi.63591
AhnLab-V3Trojan/Win32.RL_Agent.R268566
VBA32Backdoor.Agent
ALYacGen:Variant.Symmi.63591
MAXmalware (ai score=99)
Cylanceunsafe
PandaTrj/CI.A
RisingMalware.Undefined!8.C (TFE:5:tT1QAoJR2pQ)
YandexTrojan.GenAsa!fXi9pBSBazY
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AC.2061712
AVGWin32:Agent-ACQC [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.3491300584?

Malware.AI.3491300584 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment