Malware

Malware.AI.3535260254 removal

Malware Removal

The Malware.AI.3535260254 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3535260254 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Hungarian
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Behavioural detection: Injection (Process Hollowing)
  • Behavioural detection: Injection (inter-process)
  • CAPE detected the Emotet malware family
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.3535260254?


File Info:

name: 24C99FCCFC2669210E91.mlw
path: /opt/CAPEv2/storage/binaries/32eb4a34d123927ca5fd2e5f36634c1e50017e156e4ec7e5cdce3feb23c6c543
crc32: 77AC3F3D
md5: 24c99fccfc2669210e91a66d34381758
sha1: e45111b7278ca2110e8f3690a29b1ddb7877986c
sha256: 32eb4a34d123927ca5fd2e5f36634c1e50017e156e4ec7e5cdce3feb23c6c543
sha512: 63f405184f49302db7bb6b81b1fe28b7a2625fcab9926134e033e755c78616d85715b148370966d794c1105939335336fbf243cf3f98fcb04e6139de1269a8d8
ssdeep: 3072:dVF/sE6SVs0QfzOxVukrWh3sqT1p55bbtG/v0wlS/j8ZPCwu36K+pMzEp:3FkEhVsHfz/v1T1p5NhGH0/IZPCwuFX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T189248C1429C04861FF8209386635B9729E0E2D5B1B75874F3BEB347C7AEF6D15E28B09
sha3_384: c6950fe0cb69b78284562462db7bd4faf3006c2c744fd882aa0f3bffbda0d86206b527b4027aa157b915996f97f2ba22
ep_bytes: e802320000e989feffff8bff558bec8b
timestamp: 2017-10-10 14:07:50

Version Info:

0: [No Data]

Malware.AI.3535260254 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.24c99fccfc266921
CAT-QuickHealTrojan.Chapak.ZZ6
McAfeeTrojan-FMGH!24C99FCCFC26
Cylanceunsafe
ZillyaTrojan.Dovs.Win32.331
K7AntiVirusAdware ( 00539ed31 )
AlibabaTrojan:Win32/Emotet.47b3440d
K7GWTrojan ( 005149de1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36318.nuW@amvFh8lG
VirITTrojan.Win32.Emotet.AX
CyrenW32/S-0d6c22b2!Eldorado
SymantecTrojan!gm
ESET-NOD32Win32/Emotet.AW
APEXMalicious
ClamAVWin.Trojan.Emotet-6344811-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.AgentWDCR.MLQ
NANO-AntivirusTrojan.Win32.Kryptik.fhliqi
SUPERAntiSpywareTrojan.Agent/Gen-Emotet
MicroWorld-eScanTrojan.AgentWDCR.MLQ
AvastWin32:GenMalicious-NXV [Trj]
TencentMalware.Win32.Gencirc.116e4d16
TACHYONTrojan/W32.Dovs.221696
EmsisoftTrojan.AgentWDCR.MLQ (B)
F-SecureHeuristic.HEUR/AGEN.1316409
DrWebTrojan.DownLoader25.44515
VIPRETrojan.AgentWDCR.MLQ
TrendMicroTSPY_EMOTET.SMD3
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
Trapminemalicious.high.ml.score
SophosMal/Emotet-E
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan-Spy.Emotet.DP
JiangminTrojan.Dovs.ef
WebrootW32.Trojan.Emotet
AviraHEUR/AGEN.1316409
Antiy-AVLTrojan/Win32.Dovs
XcitiumMalware@#dy2wfvvhmoav
ArcabitTrojan.AgentWDCR.MLQ
ViRobotTrojan.Win32.Z.Agent.221696.EK
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Vindor!pz
GoogleDetected
AhnLab-V3Trojan/Win32.Emotet.R210261
VBA32Backdoor.Androm
ALYacTrojan.Agent.Emotet
MAXmalware (ai score=100)
MalwarebytesMalware.AI.3535260254
PandaTrj/Genetic.gen
TrendMicro-HouseCallTSPY_EMOTET.SMD3
RisingBackdoor.Androm!8.113 (TFE:5:pztnPYSKyfN)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.FVPA!tr
AVGWin32:GenMalicious-NXV [Trj]
Cybereasonmalicious.cfc266
DeepInstinctMALICIOUS

How to remove Malware.AI.3535260254?

Malware.AI.3535260254 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment