Malware

Malware.AI.3713961469 removal

Malware Removal

The Malware.AI.3713961469 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3713961469 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Behavioural detection: Executable code extraction – unpacking
  • At least one process apparently crashed during execution
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Enumerates the modules from a process (may be used to locate base addresses in process injection)
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality

How to determine Malware.AI.3713961469?


File Info:

name: 573414CCD0F2A6744417.mlw
path: /opt/CAPEv2/storage/binaries/b770e1623fc08d6552eac5cd6ecddb3009327e9e1554701872f34b70ddc28229
crc32: 14B88A6E
md5: 573414ccd0f2a67444177dd33eb17349
sha1: a65381b89bca1b5516fdaf6ae402a7909f666c52
sha256: b770e1623fc08d6552eac5cd6ecddb3009327e9e1554701872f34b70ddc28229
sha512: 377cc3fb8e30cbe4b984196a2f7d6b93059951eac1ba47152d4dff7580b6135e93cccfee96b9a63ef519306e65542c2898eb882934bb820e940cfa45427283d8
ssdeep: 49152:ZIuZsyLCdQ9y4dmKEmtFXnbNFehTQAW7YQLIs4MMXmuLcCxX9fkobdbkJG2dOBWO:vZogy4dmK/tFXbNFehlWFLXjMWuL9X9/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T114B5C0123B5184F6C237313383CA93BAAEA799304E34568326515E377EF54D3A929E1F
sha3_384: a85bd01619f9230aa1c42ccc56b57cf67d214d6b65fe5382420585c952683adeb54b05567a54e45082fd988eaf0d65b1
ep_bytes: e883ad0000e978feffff8bff558bec51
timestamp: 2020-01-13 12:01:34

Version Info:

OriginalFilename: MutableReceipt
PrivateBuild: 6.6.35.9
FileVersion: 6.6.35.9
CompanyName: Qualcomm Ventures
LegalCopyright: © 2016 All rights reserved. Qualcomm Ventures
Comments: Simulatin Girlfriends Realistic
FileDescription: Simulatin Girlfriends Realistic
InternalName: MutableReceipt
Languages: English
Assembly Version: 6.6.35.9
ProductName: MutableReceipt
LegalTrademarks: © 2016 All rights reserved. Qualcomm Ventures
ProductVersion: 6.6.35.9
Translation: 0x0409 0x04b0

Malware.AI.3713961469 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Graftor.702407
FireEyeGeneric.mg.573414ccd0f2a674
ALYacGen:Variant.Graftor.702407
CylanceUnsafe
ZillyaTrojan.DelShad.Win32.306
SangforTrojan.Win32.DelShad.cdg
K7AntiVirusTrojan ( 0055ed4f1 )
AlibabaTrojan:Win32/DelShad.157f7a2e
K7GWTrojan ( 0055ed4f1 )
Cybereasonmalicious.cd0f2a
CyrenW32/Trojan.JBFQ-2198
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HAFC
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.DelShad.cdg
BitDefenderGen:Variant.Graftor.702407
NANO-AntivirusTrojan.Win32.Encoder.guhhhl
AvastWin32:Trojan-gen
TencentWin32.Trojan.Delshad.Suns
Ad-AwareGen:Variant.Graftor.702407
TACHYONRansom/W32.DelShad.2398720
EmsisoftGen:Variant.Graftor.702407 (B)
DrWebTrojan.Encoder.30561
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0GA622
McAfee-GW-EditionBehavesLike.Win32.Dropper.vc
SophosMal/Generic-S
GDataGen:Variant.Graftor.702407
JiangminTrojan.DelShad.pw
AviraTR/Crypt.Agent.otkjl
MicrosoftTrojan:Win32/Occamy.CB7
CynetMalicious (score: 99)
McAfeeArtemis!573414CCD0F2
MAXmalware (ai score=85)
VBA32BScope.Trojan.DelShad
MalwarebytesMalware.AI.3713961469
TrendMicro-HouseCallTROJ_GEN.R002C0GA622
IkarusTrojan-Spy.Remcos
FortinetW32/Kryptik.HADM!tr
BitDefenderThetaGen:NN.ZexaF.34114.ss0@aazL34ni
AVGWin32:Trojan-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.3713961469?

Malware.AI.3713961469 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment