Malware

Malware.AI.3495406708 removal tips

Malware Removal

The Malware.AI.3495406708 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3495406708 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.3495406708?


File Info:

name: 16805BC3976713DCD03B.mlw
path: /opt/CAPEv2/storage/binaries/0ed1e82552148d7997eb8c835298540498aba33d374343fa912cbd7da5b983e9
crc32: 886F6352
md5: 16805bc3976713dcd03bd26c1ab3bbbe
sha1: 68f3da835f4a899d864ccd15ee2e1bdab71d2ab4
sha256: 0ed1e82552148d7997eb8c835298540498aba33d374343fa912cbd7da5b983e9
sha512: 553bdc49816c80560a4a03ae78587fefca8b44e0742ebaf73c3806f79500b1096c2af380d3c2022d57c2164958704c7f133202338a2b38ef25b023e6c82486d0
ssdeep: 768:58oyaUfqr7JQ436veEpUxDCL3wmQ9Ab/GfreTVPJr2ZEX9d:ryaxfJIeMnLzQSGfwB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11403D0A5FB3D0435E21B0431A8273662F8B8BD129F63C7D861C8F9ADAC77624015FA35
sha3_384: 0f8149ede1e537e06bc9642a5fc8401ad85fdc8bdd549a35db6a882a9403765dafab54fa123185673f821bba4a51708f
ep_bytes: 60be002042008dbe00f0fdff5783cdff
timestamp: 2005-04-24 05:24:16

Version Info:

Translation: 0x0804 0x04b0
CompanyName: www.3LSoft.com
LegalCopyright: www.3LSoft.com
LegalTrademarks: www.3LSoft.com
ProductName: LCDClock For VStart
FileVersion: 1.00
ProductVersion: 1.00
InternalName: LCDClock
OriginalFilename: LCDClock.exe

Malware.AI.3495406708 also known as:

BkavW32.AIDetectMalware
SkyhighGenericRXBA-ZE!16805BC39767
McAfeeGenericRXBA-ZE!16805BC39767
SangforTrojan.Win32.Agent.V3io
VirITTrojan.Win32.Generic.AHLW
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
NANO-AntivirusTrojan.Win32.ULPM.fbecaw
Trapminesuspicious.low.ml.score
WebrootW32.Malware.Heur
VBA32TScope.Trojan.VB
MalwarebytesMalware.AI.3495406708
TrendMicro-HouseCallTROJ_GEN.R002H06L123
YandexTrojan.GenAsa!pKfcC+peL+o
MaxSecureTrojan.Malware.3411146.susgen

How to remove Malware.AI.3495406708?

Malware.AI.3495406708 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment