Malware

Malware.AI.3515215504 removal tips

Malware Removal

The Malware.AI.3515215504 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3515215504 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Malware.AI.3515215504?


File Info:

name: 6B6F11A0B93CDAAD1DD7.mlw
path: /opt/CAPEv2/storage/binaries/6f5d33cdf0475181634f2064a5cd251c0c25c4061662b06066c1433f08fa5015
crc32: 9C8E3F4D
md5: 6b6f11a0b93cdaad1dd78f282b5af751
sha1: c79a2a2f459bd6986d17e789b13cbba47c8bd3fe
sha256: 6f5d33cdf0475181634f2064a5cd251c0c25c4061662b06066c1433f08fa5015
sha512: cd1d7122471e47ae8418b7bfb818c4878b124de52ba6a2c86a56ab37f92e522f0c2f205e4d3a270f9efc10bb635e90a9d2f0d0e157619e7c43d281db413e4eab
ssdeep: 49152:YIAxev+/dw+84RvrSvfbEcdtR5LsRIVBv5h:m8W1wqKtvZscv5h
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EDC533207A87A533E8500D70DC9F6387D6F8F67A116ABD1637479B272A785C0314A2FE
sha3_384: a9d67a5c1387ab40bed018fdfb50ce87734e823159f43be0b0f93069be31cf3423d3088bd88739d717e0b3835bfc864d
ep_bytes: e86f2b000050e8733601000000000090
timestamp: 2008-09-16 14:17:44

Version Info:

0: [No Data]

Malware.AI.3515215504 also known as:

LionicTrojan.Win32.Agent.l34t
MicroWorld-eScanGeneric.ProcGMar.D896C0C0
FireEyeGeneric.mg.6b6f11a0b93cdaad
ALYacGeneric.ProcGMar.D896C0C0
CylanceUnsafe
ZillyaDropper.Agent.Win32.264760
SangforRiskware.Win32.Agent.ky
K7AntiVirusTrojan ( 00261e0a1 )
BitDefenderGeneric.ProcGMar.D896C0C0
K7GWTrojan ( 00261e0a1 )
BitDefenderThetaAI:Packer.B29598C021
VirITTrojan.Win32.Generic.ACOI
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Iyeclore.K
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojan:Win32/Iyeclore.81d6b9d5
NANO-AntivirusTrojan.Win32.Delf.yuqhn
RisingWorm.Bybz!8.1D5B (TFE:5:ZKAM4YnTfKS)
EmsisoftGeneric.ProcGMar.D896C0C0 (B)
ComodoMalware@#3a6wggly3pf17
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGeneric.boq
SophosMal/DelpDl-A
APEXMalicious
AviraTR/Iyeclore.tlctf
MAXmalware (ai score=80)
Antiy-AVLTrojan/Generic.ASMalwS.ED6095
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGeneric.ProcGMar.D896C0C0
CynetMalicious (score: 99)
McAfeeArtemis!6B6F11A0B93C
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.3515215504
IkarusTrojan-Dropper.Agent
PandaTrj/CI.A
TencentWin32.Trojan.Delf.Wqdr
YandexTrojan.DR.Delf!47VenLb9oaQ
FortinetW32/Dx.KFE
AVGWin32:Delf-NZU [Trj]
Cybereasonmalicious.0b93cd
AvastWin32:Delf-NZU [Trj]

How to remove Malware.AI.3515215504?

Malware.AI.3515215504 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment