Malware

How to remove “Malware.AI.3524765348”?

Malware Removal

The Malware.AI.3524765348 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3524765348 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial language used in binary resources: Farsi
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.3524765348?


File Info:

crc32: FA34B2B0
md5: b2b6b765e528cb4e27eeb5c7cf1b61e5
name: B2B6B765E528CB4E27EEB5C7CF1B61E5.mlw
sha1: deaf2e75fdc9eddec395453b344b0c73c3ed2398
sha256: 20d45cf2bab51b1b1452277be01082db786cce377a84e7a5d4f2590df7318319
sha512: 28acb11950b2adaf5a9cd47bf0a133b0d920930ac6a5e141126a16fd8230b9a90531881c38ed17bbc7ec5decf45e83807bb9187faba49e6067dd9ad7917331d3
ssdeep: 6144:11RR99Dc09DDBI0+FkuUczdgTWnUKlpBJw9pYrG00562cNAacJd+M9+McpT:11j92f086Tt5ZWA/Hh
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, PECompact2 compressed

Version Info:

LegalCopyright: Copyright (C) 2003-2008
InternalName: Freegate
FileVersion: 0, 0, 0, 0
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: Freegate Application
SpecialBuild:
ProductVersion: 0, 0, 0, 0
FileDescription: Freegate Application
OriginalFilename: freegate.EXE
Translation: 0x0409 0x04b0

Malware.AI.3524765348 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.Proxy.3764
CynetMalicious (score: 70)
ALYacTrojan.GenericKD.30500535
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.5e528c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Freegate.E potentially unsafe
APEXMalicious
AvastFileRepMalware
ClamAVWin.Trojan.Clack-9629377-0
KasperskyBackdoor.Win32.Clack.k
BitDefenderTrojan.GenericKD.30500535
NANO-AntivirusTrojan.Win32.Clack.cwmljp
ViRobotBackdoor.Win32.A.Clack.528384
MicroWorld-eScanTrojan.GenericKD.30500535
TencentWin32.Backdoor.Clack.Pfja
Ad-AwareTrojan.GenericKD.30500535
SophosMal/Generic-S
ComodoTrojWare.Win32.Proxy.~BAAB@flku
BitDefenderThetaGen:NN.ZexaF.34294.Ei0@a8co62dP
McAfee-GW-EditionBehavesLike.Win32.Dropper.gh
FireEyeGeneric.mg.b2b6b765e528cb4e
EmsisoftTrojan.GenericKD.30500535 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor/Clack.aa
AviraHEUR/Patched.Ren
Antiy-AVLTrojan/Generic.ASMalwS.1FE0AD
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.GenericKD.30500535
AhnLab-V3Backdoor/Win32.Clack.R137218
McAfeeProxy-Agent.bk
MAXmalware (ai score=96)
VBA32Trojan.Proxy
MalwarebytesMalware.AI.3524765348
PandaTrj/CI.A
RisingMalware.Heuristic!ET#98% (RDMK:cmRtazpcCPUbZj5ZbY//cmPFtpuP)
YandexTrojan.GenAsa!TvqsV22xdoY
FortinetW32/Agent.BK!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Malware.AI.3524765348?

Malware.AI.3524765348 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment