Malware

Malware.AI.3554238901 removal

Malware Removal

The Malware.AI.3554238901 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3554238901 virus can do?

  • At least one process apparently crashed during execution
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Malware.AI.3554238901?


File Info:

crc32: 0C1CFC86
md5: cad530b569394ff16f3bb9f0e130756e
name: CAD530B569394FF16F3BB9F0E130756E.mlw
sha1: 9e443461be6f22eb432b6e4d61c8563ed8737682
sha256: ecd787ffe727e1f6690e9d0d67638272602e8fe2d3d3bcaba170edaf7c779f31
sha512: 32e5ea7251985e470f3a191174b2f13edebe901a0ec8c07a7603cb4e9ae59d8299d8c8a816f1ea7f2cf2e11c571d219d50d6f263d557b640fa451a85ca3945b1
ssdeep: 12288:eA6bf5Ud3rjdJzxVuy8WoqYIv7+0N1RNhRfc3DS:eA6tUdbj3z+qPjvaKRN3c3DS
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

Malware.AI.3554238901 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055e3fd1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Bulz.212590
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 0055e3fd1 )
Cybereasonmalicious.569394
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Autoit.PB
APEXMalicious
AvastAutoIt:MalOb-BZ [Trj]
ClamAVWin.Malware.Generic-6664531-0
KasperskyTrojan-Ransom.Win32.Blocker.henj
BitDefenderGen:Variant.Bulz.212590
NANO-AntivirusTrojan.Script.Autoit.evsret
MicroWorld-eScanGen:Variant.Bulz.212590
TencentWin32.Trojan.Blocker.Tccb
Ad-AwareGen:Variant.Bulz.212590
ComodoMalware@#2a0vqules31t5
BitDefenderThetaAI:Packer.711867BA17
VIPRETrojan.Win32.Generic.pak!cobra
TrendMicroWORM_ELVI.A
FireEyeGeneric.mg.cad530b569394ff1
EmsisoftGen:Variant.Bulz.212590 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.aeui
WebrootW32.Worm.gc
AviraTR/Dropper.Gen
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftWorm:Win32/Jenxcus.N
AegisLabTrojan.Win32.Autoit.m3vN
GDataGen:Variant.Bulz.212590
AhnLab-V3Trojan/Win32.AutoIT.C1930115
Acronissuspicious
McAfeeArtemis!CAD530B56939
MAXmalware (ai score=86)
VBA32Trojan-Downloader.Autoit.gen
MalwarebytesMalware.AI.3554238901
PandaGeneric Suspicious
TrendMicro-HouseCallWORM_ELVI.A
IkarusTrojan.Win32.Bublik
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Blocker.HENJ!worm
AVGAutoIt:MalOb-BZ [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.3554238901?

Malware.AI.3554238901 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment