Malware

Malware.AI.3581112358 removal tips

Malware Removal

The Malware.AI.3581112358 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3581112358 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Authenticode signature is invalid
  • Detects VirtualBox through the presence of a device
  • Detects VMware through the presence of a device

How to determine Malware.AI.3581112358?


File Info:

name: B3E02A59051414416D15.mlw
path: /opt/CAPEv2/storage/binaries/5dd563a1d1e0d2e043b8ab8c6465a84dc8b97c520125fc93628ab86a02f184bf
crc32: 7750A31B
md5: b3e02a59051414416d1505258282024c
sha1: 52b2e249c1ef53db6a44f9fdb6fb444601f6a388
sha256: 5dd563a1d1e0d2e043b8ab8c6465a84dc8b97c520125fc93628ab86a02f184bf
sha512: a32e2f49118a36c8120272a8f835e404f55f72c64abd5a577851fe63384e048a9b464255714fa8effcf81a6a16670d53b5a1f5ead34fb0b88201b7441314e3d5
ssdeep: 6144:7OacjhaRxH8DI4GFqHktuFLBbOe9CpQ/xAt:7Oac2UmqHktuFLBmi/xAt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B2245C117552C432E1A1413139E5EFB681BDBC349FA05ADB7BC00F3ADA612E27935E2B
sha3_384: fa2246405ae25a0a00f6251fdd4a757b31f7401bf581a3fa60b174d9cc2afad5c9badd325c5f4cd49a467b56bd236f59
ep_bytes: e8f8060000e97afeffff8b4df464890d
timestamp: 2022-06-08 20:00:41

Version Info:

0: [No Data]

Malware.AI.3581112358 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Multi.GenericML.4!c
MicroWorld-eScanGen:Variant.Fragtor.101151
FireEyeGeneric.mg.b3e02a5905141441
McAfeeRDN/Generic PWS.y
CylanceUnsafe
ZillyaTrojan.XDSpy.Win32.2
SangforTrojan.Win32.Xdspy.Vh78
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGen:Variant.Fragtor.101151
K7GWTrojan ( 0059417f1 )
K7AntiVirusTrojan ( 0059417f1 )
ArcabitTrojan.Fragtor.D18B1F
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/XDSpy.A
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.GenericML.xnet
AlibabaTrojan:Win32/XDSpy.68a252de
NANO-AntivirusTrojan.Win32.XDSpy.jpgqjm
Ad-AwareGen:Variant.Fragtor.101151
SophosMal/Generic-S (PUA)
DrWebTrojan.Siggen18.4239
VIPREGen:Variant.Fragtor.101151
TrendMicroTROJ_GEN.R002C0PFD22
McAfee-GW-EditionRDN/Generic PWS.y
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Fragtor.101151 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1213290
MAXmalware (ai score=87)
Antiy-AVLTrojan/Generic.ASMalwS.720E
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Fragtor.101151
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C5167084
ALYacGen:Variant.Fragtor.101151
VBA32BScope.Trojan.Sabsik.FL
MalwarebytesMalware.AI.3581112358
TrendMicro-HouseCallTROJ_GEN.R002C0PFD22
RisingTrojan.Generic@AI.97 (RDML:EXaoQiWRn3B0dUlA9GUiiA)
YandexTrojan.XDSpy!P0sFed1mUuc
IkarusTrojan.Win32.Xdspy
MaxSecureTrojan.Malware.82199810.susgen
BitDefenderThetaGen:NN.ZexaF.34606.nuW@auI8E6oi
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen

How to remove Malware.AI.3581112358?

Malware.AI.3581112358 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment