Malware

Malware.AI.3806205635 removal instruction

Malware Removal

The Malware.AI.3806205635 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3806205635 virus can do?

  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Uses Windows utilities for basic functionality
  • Anomalous binary characteristics

Related domains:

KEfZXpHhTWTeGXxbKyfH.KEfZXpHhTWTeGXxbKyfH

How to determine Malware.AI.3806205635?


File Info:

crc32: F1F02A2A
md5: 38ceec99aac9481fa45f3fa2e73e2054
name: 38CEEC99AAC9481FA45F3FA2E73E2054.mlw
sha1: 8fcb99ecb4e6c749f0bf5da8fee4955a837d9527
sha256: 1652928634dfda0c8a3c7ce6986538769691ad00297046cebe5cf36f1bd90721
sha512: 15728e9c9bceaa23f98f3554b28c77645204919e75316101ed27b88cf195a0260164961686a925aa77d43f677d79b38fe5d186574bd6a4f5e36f9822ec00e24e
ssdeep: 49152:q6dRFgg2FIqVDRpEN6DKpdV/6qTErq2w5HRBXYi2EUv:q6zKg2FIqJLENz/6Ax5x2Pv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2015 Oleg N. Scherbakov
InternalName: 7ZSfxMod
FileVersion: 1.7.0.3861
CompanyName: Oleg N. Scherbakov
PrivateBuild: February 22, 2016
ProductName: 7-Zip SFX
ProductVersion: 1.7.0.3861
FileDescription: 7z Setup SFX (x86)
OriginalFilename: 7ZSfxMod_x86.exe
Translation: 0x0000 0x04b0

Malware.AI.3806205635 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.PWS.Stealer.30159
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.36779430
ZillyaTrojan.Kryptik.Win32.1600941
SangforBackdoor.Win32.Agent.mytzwy
AlibabaBackdoor:Win32/Generic.ba61e5ff
K7GWRiskware ( 0040eff71 )
SymantecTrojan.Gen.MBT
AvastFileRepMalware
KasperskyBackdoor.Win32.Agent.mytzwy
BitDefenderTrojan.GenericKD.36779430
NANO-AntivirusTrojan.Win32.Stealer.iujwrb
ViRobotTrojan.Win32.Z.Agent.1843867
MicroWorld-eScanTrojan.GenericKD.36779430
Ad-AwareTrojan.GenericKD.36779430
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.38ceec99aac9481f
EmsisoftTrojan.Dropper (A)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanDropper.Agent.ghhr
WebrootW32.Trojan.Gen
AviraBDS/Agent.mmuwv
eGambitPE.Heur.InvalidSig
MicrosoftTrojan:Win32/Skeeyah.B!rfn
ArcabitTrojan.Generic.D23135A6
ZoneAlarmBackdoor.Win32.Agent.mytzwy
GDataTrojan.GenericKD.36779430
AhnLab-V3Trojan/Win.Agent.C4439392
McAfeeArtemis!38CEEC99AAC9
MAXmalware (ai score=80)
VBA32Trojan.Download
MalwarebytesMalware.AI.3806205635
PandaTrj/Agent.AJS
RisingTrojan.HiddenRun/SFX!1.D52F (CLASSIC)
FortinetPossibleThreat.PALLAS.H
AVGFileRepMalware

How to remove Malware.AI.3806205635?

Malware.AI.3806205635 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment