Malware

About “Malware.AI.3504316736” infection

Malware Removal

The Malware.AI.3504316736 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3504316736 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.3504316736?


File Info:

name: C50E9CB6201848CFF5A7.mlw
path: /opt/CAPEv2/storage/binaries/37dfe07d818cf5414a564d53f7cdae00c7b14d83052e84a17a3eb4207b2954a0
crc32: 3F6FF05E
md5: c50e9cb6201848cff5a72713bddb6422
sha1: 546642cb1b5cb98b586cc31bda0d9876f3797fcd
sha256: 37dfe07d818cf5414a564d53f7cdae00c7b14d83052e84a17a3eb4207b2954a0
sha512: b9aa68a900ca64f1d04372b95d52d8ba5249e4fdfa71a9feee2b40fd96306a66a28dfd7870b52c273dabe1fba1ec4fd93a9568a0525142d192dc700a3aa58649
ssdeep: 12288:E5I+2CpSqavtkCKu32dzjDOkZUSAXYWK8H3hqFqMx6Z6QQNBAmbwo:EC54Sqa1X2dzjHxicFqSi+Gmb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T155D4AE73677178D0FA6420323AB6FB14E43F22B2DF64AEB29BC56DB50DB46C060194D9
sha3_384: a3e39ed4ae28060145458a160c84c9e37632d0bc592068451f3c243a3c31521ee1ca46f152f0ac42496e63b094fca659
ep_bytes: 535751bb18000000648b3b03db01fb8b
timestamp: 2020-01-10 16:12:11

Version Info:

Comments:
LegalCopyright: License: MPL 2
CompanyName: Mozilla Foundation
FileDescription:
FileVersion: 78.0.1
ProductVersion: 78.0.1
InternalName:
LegalTrademarks: Mozilla
OriginalFilename: maintenanceservice.exe
ProductName: Firefox
BuildID: 20200630195452
Translation: 0x0000 0x04b0

Malware.AI.3504316736 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanWin32.Expiro.Gen.6
FireEyeGeneric.mg.c50e9cb6201848cf
ALYacWin32.Expiro.Gen.6
CylanceUnsafe
VIPREWin32.Expiro.Gen.6
SangforTrojan.Win32.Save.a
Cybereasonmalicious.620184
VirITWin32.Expiro.CW
CyrenW32/Expiro.AG.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Expiro.CP
APEXMalicious
CynetMalicious (score: 100)
BitDefenderWin32.Expiro.Gen.6
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Xpirat-C [Inf]
Ad-AwareWin32.Expiro.Gen.6
EmsisoftWin32.Expiro.Gen.6 (B)
Trapminemalicious.moderate.ml.score
SophosML/PE-A + Mal/EncPk-ANR
SentinelOneStatic AI – Malicious PE
GDataWin32.Expiro.Gen.6
JiangminTrojan.Bingoml.esh
AviraW32/Infector.Gen8
Antiy-AVLTrojan/Generic.ASVirus.332
ArcabitWin32.Expiro.Gen.6
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GoogleDetected
AhnLab-V3Malware/Win.Generic.R478913
Acronissuspicious
MAXmalware (ai score=81)
VBA32BScope.Trojan.Wacatac
MalwarebytesMalware.AI.3504316736
IkarusVirus.Win32.Expiro
FortinetW32/Expiro.CP
BitDefenderThetaGen:NN.ZexaE.34754.LC0@aeXZ6!bi
AVGWin32:Xpirat-C [Inf]
PandaW32/Expiro.AK

How to remove Malware.AI.3504316736?

Malware.AI.3504316736 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment