Malware

Malware.AI.3815836119 information

Malware Removal

The Malware.AI.3815836119 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3815836119 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Malware.AI.3815836119?


File Info:

name: 4439F3432B803F94E146.mlw
path: /opt/CAPEv2/storage/binaries/9715491a9e3dcf57384d6ad236ed2b13e7ac0edb3a76f8318166c40c93f62911
crc32: 812E2426
md5: 4439f3432b803f94e146bb8529b98087
sha1: 3ffd0ced558683e96a1c93db71f10a9c5f98126f
sha256: 9715491a9e3dcf57384d6ad236ed2b13e7ac0edb3a76f8318166c40c93f62911
sha512: 4061d53940a5d8b3959eb79c1747f4bd2b6c9b352fdeb5884e12cb9186129d1a0f0266b5a7f94383392dfadeef53db2d876f5bc63370e224df643febaf569908
ssdeep: 384:wrSRDLGyKPlLL+vOgqEjFL7ICpppppppppppf6KysbI883o+0YPhhXq3dfc67:v5G5L+vOgqEjFL7ICpppppppppppf6KZ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17482774EAF958772C81B4B351C6AE5E20CB49F137A33D019CA88738696B744B9F60ED1
sha3_384: 2b5788d792d4556c3c892848e3d19ca7db727f4de183846fd397cde83c500bd15593e433be81ae4a3030437d57b07653
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-02-02 08:44:59

Version Info:

Translation: 0x0000 0x04b0
Comments: 360安全卫士 系统修复图标扫描模块
CompanyName: 360.cn
FileDescription: 360安全卫士 系统修复图标扫描模块
FileVersion: 1.0.0.1037
InternalName: Qgwioruj.exe
LegalCopyright: (C) 360.cn Inc. All Rights Reserved.
LegalTrademarks:
OriginalFilename: Qgwioruj.exe
ProductName: 360安全卫士
ProductVersion: 1.0.0.1037
Assembly Version: 1.0.0.1037

Malware.AI.3815836119 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Strictor.266064
FireEyeGeneric.mg.4439f3432b803f94
Cybereasonmalicious.d55868
BitDefenderThetaGen:NN.ZemsilF.34182.bm0@aaMM4ml
SymantecMSIL.Downloader!gen7
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.KHA
KasperskyHEUR:Trojan-Spy.MSIL.Quasar.gen
BitDefenderGen:Variant.Strictor.266064
AvastWin32:DropperX-gen [Drp]
EmsisoftGen:Variant.Strictor.266064 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataGen:Variant.Strictor.266064
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4943898
ALYacGen:Variant.Strictor.266064
MalwarebytesMalware.AI.3815836119
APEXMalicious
RisingTrojan.Generic/MSIL@AI.94 (RDM.MSIL:y2PYoGaPU1p2O2HQ8cp1NA)
MAXmalware (ai score=80)
eGambitUnsafe.AI_Score_99%
FortinetMSIL/GenKryptik.FQKH!tr
AVGWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_70% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.3815836119?

Malware.AI.3815836119 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment