Malware

How to remove “Malware.AI.36034400”?

Malware Removal

The Malware.AI.36034400 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.36034400 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.36034400?


File Info:

name: 3E10498C9CAD9C5C9159.mlw
path: /opt/CAPEv2/storage/binaries/0dca8954c77811ad362ed6e4340aab71e8eb3f2bc3fe2b2993a8178f6756f766
crc32: 01D59F16
md5: 3e10498c9cad9c5c9159bcbe188a8ff8
sha1: c0ec1681d36980f147f39d674afd9ba51c4c568c
sha256: 0dca8954c77811ad362ed6e4340aab71e8eb3f2bc3fe2b2993a8178f6756f766
sha512: 0f394979816adb1c2aea14aaef332071555ef44d211c8d4506cf544c96f459d8751acb9b84c89bb1dc84933e7ba216d7cfdc6b53f444ec45e280d37d3878a3f5
ssdeep: 24576:mWFBfpksrmwEugIe55m4wtTMxAdR10r8FLHNpI9F:hvSOmL/4M9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EF25D02033A54B7BC5AF87FA906A160C4BEDF567B51AD7CC080865FA0C67782AD017E6
sha3_384: fa418d65423d1b2f4f7f0ee8ca4dcbb55f797762e7a2c494955c09cd0cd6378a354da38d5b3a10b6aee58d0f3e45c128
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-04-07 19:49:22

Version Info:

Translation: 0x0000 0x04b0
CompanyName: Microsoft Corporation
FileDescription:
FileVersion: 15.0.60407.1
InternalName: MCppEE.dll
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: MCppEE.dll
ProductName: Microsoft ® Visual Studio ®
ProductVersion: 15.0.60407.1
Assembly Version: 15.0.0.0

Malware.AI.36034400 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Tedy.4!c
MicroWorld-eScanGen:Variant.Tedy.126548
FireEyeGeneric.mg.3e10498c9cad9c5c
McAfeeRDN/Generic.dx
MalwarebytesMalware.AI.36034400
VIPREGen:Variant.Tedy.126548
SangforTrojan.Win32.Agent.V1ij
K7AntiVirusTrojan ( 005963c61 )
AlibabaTrojan:MSIL/Kryptik.4902bd23
K7GWTrojan ( 005963c61 )
Cybereasonmalicious.1d3698
CyrenW32/MSIL_Agent.DQU.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Kryptik.AFXH
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.MSIL.Crypt.gen
BitDefenderGen:Variant.Tedy.126548
AvastWin32:CrypterX-gen [Trj]
Ad-AwareGen:Variant.Tedy.126548
EmsisoftGen:Variant.Tedy.126548 (B)
F-SecureTrojan.TR/Kryptik.vqost
McAfee-GW-EditionRDN/Generic.dx
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Tedy.126548
AviraTR/Kryptik.vqost
MAXmalware (ai score=86)
Antiy-AVLGrayWare/Win32.Wacapew
ArcabitTrojan.Tedy.D1EE54
ZoneAlarmHEUR:Trojan.MSIL.Crypt.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C5216235
ALYacGen:Variant.Tedy.126548
VBA32TScope.Trojan.MSIL
CylanceUnsafe
RisingTrojan.Crypt!8.2E3 (CLOUD)
IkarusTrojan.MSIL.Crypt
FortinetMalicious_Behavior.SB
AVGWin32:CrypterX-gen [Trj]
PandaTrj/Chgt.AA
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.36034400?

Malware.AI.36034400 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment