Malware

Malware.AI.3580538195 malicious file

Malware Removal

The Malware.AI.3580538195 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3580538195 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3580538195?


File Info:

name: DF798BC0B403303D5246.mlw
path: /opt/CAPEv2/storage/binaries/d2d6d56a6e14006951b19fe7fdebff8a127afa16c9e935bc9ac15ec65c85838a
crc32: 55EC41C7
md5: df798bc0b403303d5246ffe34a19da0d
sha1: 0dcfa21f0ad0f789870605e0a5d59964fc66891a
sha256: d2d6d56a6e14006951b19fe7fdebff8a127afa16c9e935bc9ac15ec65c85838a
sha512: 53b13125a8fb627d3321b2836d8df70cf7b5441d1c6da3d2d7aee7f592d10f6bf961131d1e0b14b0e35a3f1e7303a5f140a27d9ff270744d86bb03b5a4b91087
ssdeep: 12288:PpDhOhIEPu+4gdJx930F0eStIU2eI1MNJMKDjn4p:NsXPu+4gR9R/R291E
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19CB46D32B5E1C433D1725AB89D5B9398682ABE503D24EC477BE95F4C4F39381342B297
sha3_384: a937c3cb1133e3f29bd7ed5cc5125865331e52c681b125ed28039f70196e5e3bdcb5446fc7f9434e9812ac67a584ab47
ep_bytes: 558bec83c4e833c08945ec8945e8b8a8
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.3580538195 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.PWS.Lydra.A
FireEyeGeneric.mg.df798bc0b403303d
McAfeeSpy-Wokiscan
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 0054ffd11 )
K7AntiVirusTrojan ( 0054ffd11 )
BaiduWin32.Trojan-Spy.Agent.q
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderTrojan.PWS.Lydra.A
AvastWin32:Lydra-AK [Trj]
TencentTrojan.Win32.Lydra.ha
Ad-AwareTrojan.PWS.Lydra.A
ComodoTrojWare.Win32.Cosmu.abg@20lglk
F-SecureTrojan.TR/ATRAPS.Gen
VIPRETrojan.PWS.Lydra.A
TrendMicroTSPY_LYDRA.SMM
McAfee-GW-EditionSpy-Wokiscan
SophosTroj/Lydra-Gen
IkarusTrojan-Spy.Win32.Lydra.A
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Generic.ASMalwS.299
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.PWS.Lydra.A
GDataWin32.Trojan.PSE.1EJY54W
GoogleDetected
AhnLab-V3Trojan/Win32.Lydra.C66177
ALYacTrojan.PWS.Lydra.A
MAXmalware (ai score=81)
MalwarebytesMalware.AI.3580538195
TrendMicro-HouseCallTSPY_LYDRA.SMM
RisingSpyware.Lydra!1.6608 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/LYDRA.SMB!tr
BitDefenderThetaGen:NN.ZelphiF.34646.EGW@aSB!CVh
AVGWin32:Lydra-AK [Trj]
Cybereasonmalicious.0b4033

How to remove Malware.AI.3580538195?

Malware.AI.3580538195 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment