Malware

Malware.AI.3496918937 removal

Malware Removal

The Malware.AI.3496918937 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3496918937 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Attempts to delete volume shadow copies
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.3496918937?


File Info:

crc32: 3EAD3C32
md5: d8c4c1e42e07b528174916e66222a9b6
name: D8C4C1E42E07B528174916E66222A9B6.mlw
sha1: e2301d9f60efa03f7008bc4b281dc36d8cea17f5
sha256: 9232a491d4eef58c1f99fc9fdabcd2508bd915a3895e9efe30736e6a39d1ad42
sha512: d2f42322dc7d7923873e4925df734291048cf276a3d80150d8091e1b8157ad2836458bb3fffecbf23e4190c5cea384ce012cb714f789e69dec8da2decc338b3e
ssdeep: 6144:gpzC1o7spXzWFjGEhXsf9iKj2C8S1yoH3LHLH9t2B6iO3eDIq5QT6c2/:gpNs9zWthXsf/j2C8RSLrdM68jZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9. SolarWinds
InternalName: Matching Seed
FileVersion: 6.6.47.2
CompanyName: SolarWinds
PrivateBuild: 6.6.47.2
LegalTrademarks: Copyright xa9. SolarWinds
Comments: Groups Prductid Radi Ndelist Istorage
ProductName: Matching Seed
Languages: English
ProductVersion: 6.6.47.2
FileDescription: Groups Prductid Radi Ndelist Istorage
OriginalFilename: Matching Seed.exe
Translation: 0x0409 0x04b0

Malware.AI.3496918937 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00519f781 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.3953
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.Shade.27
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/Foreign.3366bbc4
K7GWTrojan ( 00519f781 )
Cybereasonmalicious.42e07b
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.Crysis.P
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Foreign.npxp
BitDefenderGen:Variant.Ransom.Shade.27
NANO-AntivirusTrojan.Win32.Encoder.evaikz
MicroWorld-eScanGen:Variant.Ransom.Shade.27
TencentWin32.Trojan.Raas.Auto
Ad-AwareGen:Variant.Ransom.Shade.27
SophosMal/Generic-S
ComodoMalware@#1x0mghubxlljv
BitDefenderThetaGen:NN.ZexaF.34678.wq0@a4G3ZIfi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.fc
FireEyeGeneric.mg.d8c4c1e42e07b528
EmsisoftGen:Variant.Ransom.Shade.27 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_88%
MicrosoftRansom:Win32/Wadhrama.A!rsm
ArcabitTrojan.Ransom.Shade.27
AegisLabTrojan.Multi.Generic.4!c
GDataGen:Variant.Ransom.Shade.27
AhnLab-V3Win-Trojan/Sagecrypt.Gen
Acronissuspicious
McAfeeArtemis!D8C4C1E42E07
MAXmalware (ai score=94)
VBA32Trojan-Ransom.Foreign
MalwarebytesMalware.AI.3496918937
PandaTrj/CI.A
RisingRansom.Wadhrama!8.E401 (CLOUD)
IkarusTrojan.Win32.Filecoder
FortinetW32/Filecoder_Crysis.P!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.3496918937?

Malware.AI.3496918937 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment