Malware

Malware.AI.3503579042 malicious file

Malware Removal

The Malware.AI.3503579042 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3503579042 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Attempts to modify desktop wallpaper
  • Exhibits behavior characteristic of Cerber ransomware
  • Attempts to execute a binary from a dead or sinkholed URL
  • Writes a potential ransom message to disk
  • Attempts to modify proxy settings
  • Attempts to access Bitcoin/ALTCoin wallets
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Malware.AI.3503579042?


File Info:

crc32: EEBE54C2
md5: 170b980275823d5c416956204a6d34c4
name: 170B980275823D5C416956204A6D34C4.mlw
sha1: 72186598cfa19b90eb86998677589039bf40b5d2
sha256: b4b572dd61c12a9f87adef43c90a479f42c8b5bb50349a0705bf40b5e2ed7f30
sha512: c0a7e6039b322098e95c644eba9007ade8bb6d9abef3769a725253a4a4b48c716340b34bb5caad8b75199c4463132df1a51622a53a477e8bf77e993816996313
ssdeep: 12288:n8Qb9j5tQtYWWG1JTuRGOSwegoYaU8ULU:nTXtQtYWNTuRGbRgZj4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) 1999-2015 Igor Pavlov
InternalName: 7zFM
FileVersion: 1.5.1.2
CompanyName: Igor Pavlov
ProductName: 7-Zip
ProductVersion: 1.5.1.2
FileDescription: 7-Zip File Manager
OriginalFilename: 7zFM.exe
Translation: 0x0409 0x04b0

Malware.AI.3503579042 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056e9231 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop7.24571
CynetMalicious (score: 100)
ALYacTrojan.Ransom.BOE
CylanceUnsafe
ZillyaTrojan.Zerber.Win32.1628
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0056e9231 )
Cybereasonmalicious.275823
CyrenW32/Ransom.IO.gen!Eldorado
SymantecTrojan.Randsom.A
ESET-NOD32Win32/Filecoder.Cerber.G
APEXMalicious
AvastWin32:Rootkit-gen [Rtk]
KasperskyTrojan-Ransom.Win32.Zerber.dong
BitDefenderTrojan.Ransom.BOE
NANO-AntivirusTrojan.Win32.Zerber.enjbxg
MicroWorld-eScanTrojan.Ransom.BOE
TencentMalware.Win32.Gencirc.10bbbb24
Ad-AwareTrojan.Ransom.BOE
SophosMal/Generic-S
ComodoMalware@#fi7fvzfn7pcj
BitDefenderThetaGen:NN.ZexaF.34628.Du1@aWMJpPji
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.SMJAL
McAfee-GW-EditionBehavesLike.Win32.Emotet.gc
FireEyeGeneric.mg.170b980275823d5c
EmsisoftTrojan.Ransom.BOE (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Zerber.elx
AviraHEUR/AGEN.1134006
eGambitUnsafe.AI_Score_95%
MicrosoftRansom:Win32/Cerber
ArcabitTrojan.Ransom.BOE
AegisLabTrojan.Win32.Zerber.j!c
GDataTrojan.Ransom.BOE
TACHYONRansom/W32.Cerber.488395
AhnLab-V3Trojan/Win32.Cerber.C1898959
Acronissuspicious
McAfeeGenericRXBE-QZ!170B98027582
MAXmalware (ai score=84)
VBA32BScope.Trojan.Skeeyah
MalwarebytesMalware.AI.3503579042
PandaTrj/CI.A
TrendMicro-HouseCallRansom_CERBER.SMJAL
RisingRansom.Zerber!8.518C (CLOUD)
YandexTrojan.Filecoder!7/XPk4YXMiA
IkarusTrojan-Spy.Remcos
FortinetW32/Zerber.DONG!tr
AVGWin32:Rootkit-gen [Rtk]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.d99

How to remove Malware.AI.3503579042?

Malware.AI.3503579042 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment