Malware

Malware.AI.3668963527 removal guide

Malware Removal

The Malware.AI.3668963527 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3668963527 virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.3668963527?


File Info:

crc32: F2B6956A
md5: 94911666a61beb59d2988c4fc7003e5a
name: 94911666A61BEB59D2988C4FC7003E5A.mlw
sha1: 78174ecc21b4ae638c2064f5c2460d3b06ad397b
sha256: cfc8324c59165b25b78c640ed77ebd7c867e042e09c95c218d84c5cd8e46910e
sha512: 8478f48e4fc887bd53d75adb621f046093ac9c045ca5eeafd16763367bc1fd01bd017a57947f0f6af33b464e6ba36de1d352f9e28d56541d8cbffd62124083f4
ssdeep: 6144:L/zQHx458y+d4QC4rVhJHYcK3e1hGg/saVfuCc6TokKU:G458PHrXJnIKAlmfuCc8ow
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: zwere.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: zwere.exe

Malware.AI.3668963527 also known as:

K7AntiVirusTrojan ( 00511ed71 )
LionicTrojan.MSIL.Crypt.4!c
Elasticmalicious (high confidence)
DrWebTrojan.KillProc.53170
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MsilFC.S19433345
ALYacTrojan.MSIL.Crypt.gzg
CylanceUnsafe
ZillyaTrojan.Crypt.Win32.34814
SangforTrojan.MSIL.Crypt.ebxa
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Kryptik.feca88cc
K7GWTrojan ( 00511ed71 )
Cybereasonmalicious.6a61be
SymantecTrojan Horse
ESET-NOD32a variant of MSIL/Kryptik.JYK
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.MSIL.Crypt.ebxa
BitDefenderGen:Variant.Razy.835330
NANO-AntivirusTrojan.Win32.Crypt.eqxlii
ViRobotTrojan.Win32.S.Agent.321432
MicroWorld-eScanGen:Variant.Razy.835330
TencentMsil.Trojan.Crypt.Htlp
Ad-AwareGen:Variant.Razy.835330
SophosML/PE-A + Mal/MSIL-TH
ComodoMalware@#32bevd22dr20s
BitDefenderThetaGen:NN.ZemsilF.34266.tm2@aGauaij
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FRS.0NA103GV21
McAfee-GW-EditionGenericRXDV-NY!94911666A61B
FireEyeGeneric.mg.94911666a61beb59
EmsisoftGen:Variant.Razy.835330 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.gjki
WebrootW32.Trojan.GenKD
AviraHEUR/AGEN.1122372
eGambitPE.Heur.InvalidSig
Antiy-AVLTrojan/Generic.ASMalwS.211E7A3
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Skeeyah.A!rfn
ArcabitTrojan.Razy.DCBF02
GDataGen:Variant.Razy.835330
AhnLab-V3Trojan/Win32.Crypt.C2043964
McAfeeGenericRXDV-NY!94911666A61B
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.3668963527
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_FRS.0NA103GV21
YandexTrojan.Crypt!LrkDUDy+EvY
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.JYK!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.3668963527?

Malware.AI.3668963527 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment