Malware

Malware.AI.3564192053 removal guide

Malware Removal

The Malware.AI.3564192053 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3564192053 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • At least one process apparently crashed during execution
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Malware.AI.3564192053?


File Info:

name: A1AFFCFE07AEE59D9573.mlw
path: /opt/CAPEv2/storage/binaries/295484900c837c3229f9f09a7bc25f5d7b20036e17f614a7957f83cdd3dd0b0c
crc32: 42626DC1
md5: a1affcfe07aee59d9573c01f4a963cf2
sha1: cce6de49bb1850589825152979023be6c9c2e5ed
sha256: 295484900c837c3229f9f09a7bc25f5d7b20036e17f614a7957f83cdd3dd0b0c
sha512: 06665f55f079ac8b555c2bc36b816d65dd03bd3e88055009b67f20fd170979bd6069a3a0670427d1c2a3b38da1c09cb83ec18c85788013edfcb20d7e4c85df70
ssdeep: 6144:lI3c+kNiSh135URAmiHzxpGHzrG4RmjjWcdt8QsPNs2TI:lIsJNiI35tm2+S0mjXd6/PNlI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CDB5C002B2D140FAD1EB127418B65F758ABE7E06AA21DA9BE334FE5E5D31241D81D30F
sha3_384: 731f2a3de6cecfdd9f73baf23c3e5af8dad282047d36f806d73aa3d2d515ab99dc01e8097c5158cf106931659b6e9d06
ep_bytes: 558bec6aff68f8b861006888b2600064
timestamp: 2006-02-02 02:40:47

Version Info:

Comments:
CompanyName: Sysinternals - www.sysinternals.com
FileDescription: Rootkit detection utility
FileVersion: 1.70
InternalName:
LegalCopyright: Copyright (C) 2005-2006 Bryce Cogswell and Mark Russinovich
LegalTrademarks:
OriginalFilename:
PrivateBuild:
ProductName: Sysinternals Rootkitrevealer
ProductVersion: 1.70
SpecialBuild:
Translation: 0x0409 0x04b0

Malware.AI.3564192053 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.a1affcfe07aee59d
CAT-QuickHealTrojan.Swisyn.OD5
McAfeeArtemis!A1AFFCFE07AE
CylanceUnsafe
Cybereasonmalicious.9bb185
CyrenW32/Swisyn.R.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H0CL721
Paloaltogeneric.ml
ClamAVWin.Malware.Swisyn-6888356-0
NANO-AntivirusTrojan.Win32.TrjGen.czlucj
AvastWin32:Trojan-gen
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.BadFile.vz
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.14A82VQ
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
MalwarebytesMalware.AI.3564192053
APEXMalicious
YandexTrojan.Siggen!Sy2E0LNPRsg
IkarusTrojan.Win32.Swisyn
FortinetW32/Swisyn.R!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.3564192053?

Malware.AI.3564192053 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment