Malware

Malware.AI.3547239354 removal instruction

Malware Removal

The Malware.AI.3547239354 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3547239354 virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Malware.AI.3547239354?


File Info:

name: A85AED3D36CE824E11F2.mlw
path: /opt/CAPEv2/storage/binaries/2dc93bf81c90a3439ea4b065f9c355b1a63d161bc8a695d9f26c1a65dd9fee83
crc32: 19D6F0CE
md5: a85aed3d36ce824e11f2d1ed6eb61318
sha1: 4b8adccef8f7ceaa13a29836302f954ea656e1cd
sha256: 2dc93bf81c90a3439ea4b065f9c355b1a63d161bc8a695d9f26c1a65dd9fee83
sha512: e5a2295b0ab489ed05786c742fb4996e779d6d0ec2a68451c1d9ac64400446340a3b9b7db5ee9ff64611ad3c4540bec26f58ab4fa4a034b368a3e96d3898b2bd
ssdeep: 12288:OpIuUuvAOlAcit1kzY4qVipfU0pUufzROWdUzUpXMoaarf:OpgitpXMoaarf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T162948E3CFD86F66CD21993B0695DBC4D6DA97F187B96A20A813F3B0C6C2077BB104895
sha3_384: 2eb11d0f50a7c3bdadbbea612cace4073ec08b5f8d1d3ae25f08b50f3df3d45bcfcdeeefc59bb5395e840edf19d097ed
ep_bytes: 558bec6aff684031400068b022400064
timestamp: 2011-03-15 04:06:07

Version Info:

0: [No Data]

Malware.AI.3547239354 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.185
MicroWorld-eScanTrojan.GenericKD.34110279
FireEyeGeneric.mg.a85aed3d36ce824e
CAT-QuickHealW32.Zombie.A4
ALYacTrojan.GenericKD.34110279
CylanceUnsafe
VIPRETrojan.Win32.Cosmu.bwts (v)
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0055e3dd1 )
BitDefenderTrojan.GenericKD.34110279
K7GWTrojan ( 0055e3dd1 )
Cybereasonmalicious.d36ce8
BitDefenderThetaGen:NN.ZexaF.34182.zqZ@aGBV9uib
CyrenW32/Cosmu.H.gen!Eldorado
ESET-NOD32Win32/Agent.NBJ
TrendMicro-HouseCallTROJ_SPNR.15CC13
ClamAVWin.Trojan.Cosmu-1058
KasperskyTrojan.Win32.Cosmu.bwts
NANO-AntivirusTrojan.Win32.Cosmu.bgzaxj
RisingTrojan.Zombie!8.2DA5 (RDMK:cmRtazqZA6YRCTDRdADX/kB5jVbL)
Ad-AwareTrojan.GenericKD.34110279
SophosMal/Behav-112
ComodoTrojWare.Win32.Agent.NBJ@4xjtww
ZillyaTrojan.Cosmu.Win32.12187
TrendMicroTROJ_SPNR.15CC13
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.gh
EmsisoftTrojan.GenericKD.34110279 (B)
IkarusTrojan.Win32.Cosmu
GDataTrojan.GenericKD.34110279
JiangminTrojan/Cosmu.ppf
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Generic.ASMalwS.13CA44
KingsoftHeur.SSC.2787082.0010.(kcloud)
ArcabitTrojan.Generic.D2087B47
ZoneAlarmTrojan.Win32.Cosmu.bwts
MicrosoftTrojan:Win32/Zombie.A
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Cosmu.R51515
McAfeeGenericRXNR-SA!A85AED3D36CE
MAXmalware (ai score=84)
VBA32Trojan.Cosmu
MalwarebytesMalware.AI.3547239354
PandaTrj/Genetic.gen
APEXMalicious
TencentVirus.Win32.Cosmu.a
YandexTrojan.GenAsa!qZCC7vZoV+4
MaxSecureTrojan.Cosmu.bwts
FortinetW32/Agent.NBJ!tr
AVGWin32:RansomX-gen [Ransom]
AvastWin32:RansomX-gen [Ransom]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.3547239354?

Malware.AI.3547239354 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment