Malware

Malware.AI.3691450055 removal guide

Malware Removal

The Malware.AI.3691450055 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3691450055 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Performs HTTP requests potentially not found in PCAP.
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Malware.AI.3691450055?


File Info:

name: C0AF0DA981C6CE7F874F.mlw
path: /opt/CAPEv2/storage/binaries/28fb971e3553db794b51a6093a3491319e41f56073ed884b9113ae484fe758ef
crc32: 49EE6D22
md5: c0af0da981c6ce7f874f5ad5cb3eb965
sha1: 8b8f4c23b15e19372cd644440b4c729a23f3a9a1
sha256: 28fb971e3553db794b51a6093a3491319e41f56073ed884b9113ae484fe758ef
sha512: 1b3462bd52cf910ab36e784af60cc5c25315392c84bb2fbbe04224e281a4c43d12f4a0c442240f0de2607d49fa1699cf7ffaeb06666a9d86d16cf7bb8be8e50f
ssdeep: 12288:YsbZ/Y0MEePbiVtIvVOR3BSOiZhy+W5rDMbIgNyHWOm05IUA7Jc:FZw0WPI+ExRiZyrDMbIEyH/m02jm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14EF4DF95774B9EE9C88814324CBFCF751E047CEA5954469236F83F3F7EB9211A80427A
sha3_384: 05bec9126faa37e3c9d63b69ba658cfb8f43bda891468323930d47a41aa35f3a4fd665089057dfdeca1137605ea71be8
ep_bytes: 60e80000000058059f0200008b3003f0
timestamp: 2022-05-31 15:01:20

Version Info:

Comments:
CompanyName: Jerry Software
FileDescription: Media Player
FileVersion: 7, 17, 10, 0
InternalName: Media Player
LegalCopyright: (C) Jerry Software. All rights reserved.
LegalTrademarks:
OriginalFilename: MediaPlayer.EXE
PrivateBuild:
ProductName: Media Player
ProductVersion: 7, 17, 10, 0
SpecialBuild:
Translation: 0x0409 0x04b0

Malware.AI.3691450055 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
ClamAVWin.Malware.Wacatac-9951962-0
FireEyeGeneric.mg.c0af0da981c6ce7f
McAfeeGenericRXAA-AA!C0AF0DA981C6
MalwarebytesMalware.AI.3691450055
SangforTrojan.Win32.Agent.V6r6
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderThetaGen:NN.ZexaF.36250.Vm0@aeiTMGhi
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
AvastWin32:Malware-gen
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
Trapminemalicious.high.ml.score
Antiy-AVLTrojan/Win32.SGeneric
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R475874
MaxSecureTrojan.Malware.184327896.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.3691450055?

Malware.AI.3691450055 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment