Malware

Malware.AI.3510037443 removal tips

Malware Removal

The Malware.AI.3510037443 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3510037443 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.3510037443?


File Info:

name: C5FB95D9F74BB19DC1F7.mlw
path: /opt/CAPEv2/storage/binaries/552919d1f562d8ba409f975cdeb15f50fe4ab3ef8a50d055ab847c40f5175659
crc32: F8C420E2
md5: c5fb95d9f74bb19dc1f7495ed22971a2
sha1: b9e0668dc71fca191033e4202adb4886847aa3eb
sha256: 552919d1f562d8ba409f975cdeb15f50fe4ab3ef8a50d055ab847c40f5175659
sha512: f85925d061b2b3a4efc71f9836e96532b2e7d790892be3b7d58cdfbf3e5fe469f99e08781d7ae7ad1956387acb7d5a9563e6daa50b6d75027082caf01e027f60
ssdeep: 12288:uOZzz6BvEWjrCTZ6fULTzX2qd/gJ03cSSW57bjxQ0gkDRvP8BbZK045tPn6:uOx6brwZ6fULTxlg8H7bNQZIvQh4t
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T173E4CE014B48DC40CA0492B7C9160AB75271FE757B26DAB92E943CCBBF72A9EC517633
sha3_384: b52b86cac35e9ce86c831114227b594bd6973843efd62620ab46cede0c12265779d1ba9602bc7c669d3d074b9e463492
ep_bytes: 60e80000000058055a0b00008b3003f0
timestamp: 2022-09-17 07:52:08

Version Info:

Comments:
CompanyName: YT Applications
FileDescription: YT Downloader
FileVersion: 7, 16, 0, 0
InternalName: YT Downloader
LegalCopyright: (C) YT Applications. All rights reserved.
LegalTrademarks:
OriginalFilename: YTDownloader.EXE
PrivateBuild:
ProductName: YT Downloader
ProductVersion: 7, 16, 0, 0
SpecialBuild:
Translation: 0x0409 0x04b0

Malware.AI.3510037443 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
ClamAVWin.Malware.Generic-9951959-0
FireEyeGeneric.mg.c5fb95d9f74bb19d
McAfeeGenericRXTW-AB!C5FB95D9F74B
MalwarebytesMalware.AI.3510037443
SangforTrojan.Win32.Agent.Vwmy
CyrenW32/ABRisk.FTZE-3009
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Suspicious PE
Antiy-AVLTrojan/Win32.SGeneric
GoogleDetected
BitDefenderThetaGen:NN.ZexaF.36318.QmuaauWbS3ci
VBA32BScope.Trojan.Sabsik.FL
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H06EJ23
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Malware.AI.3510037443?

Malware.AI.3510037443 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment