Malware

Malware.AI.3893371236 removal instruction

Malware Removal

The Malware.AI.3893371236 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3893371236 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Touches a file containing cookies, possibly for information gathering
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.3893371236?


File Info:

name: 2B499A9CC10DBB1F9E9B.mlw
path: /opt/CAPEv2/storage/binaries/67f7adc6cf472a925dd3e9a951790fd22ee44066b19ce0fd5149e35dd0d10e3c
crc32: E27890FE
md5: 2b499a9cc10dbb1f9e9b7d6779beeafd
sha1: 431fb3bd257b3df429c10d1eb590c007c701fce5
sha256: 67f7adc6cf472a925dd3e9a951790fd22ee44066b19ce0fd5149e35dd0d10e3c
sha512: c14d53b1201221964439800d69f2fee4ec140071ad4f5d5a2df64445e2ff1fa355d71abadd55512cca143f0f50d7436de5caf730d7e1f8c99fc0c1b675d444c6
ssdeep: 49152:qMbF/erpC5YFMqpz9yln8fi2ycTX0TzatmcURRzikd4UwDUyYRaKvBP7ykzvRgsF:LBchB9yhOXkTeDUyYdBPFvRgsAA5
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16ED501B7E00097BADAB09435A83F80D20A7B9D3B5079F90075CFB969CB3255B8637716
sha3_384: e2bbf99b01ba0254e8b38b4802a3f21c5294c2370115fd7ac28d01f1452bca0f3636358b853a30dfa36d33769990bd9b
ep_bytes: 60be008057008dbe0090e8ff5783cdff
timestamp: 2008-03-20 11:15:36

Version Info:

CompanyName:
FileDescription: Windows host process
FileVersion: 3.0.0.0
InternalName:
LegalCopyright:
LegalTrademarks:
OriginalFilename: video
ProductName:
ProductVersion:
Translation: 0x0809 0x04b0

Malware.AI.3893371236 also known as:

BkavW32.Common.7BD92F37
LionicWorm.Win32.Agent.o!c
MicroWorld-eScanTrojan.GenericKD.70025617
FireEyeTrojan.GenericKD.70025617
SkyhighBehavesLike.Win32.BadFile.vc
ALYacTrojan.GenericKD.70025617
MalwarebytesMalware.AI.3893371236
SangforWorm.Win32.Agent.V0tj
ArcabitTrojan.Generic.D42C8191
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 99)
ClamAVLegacy.Trojan.Agent-1388589
KasperskyWorm.Win32.Agent.vyo
BitDefenderTrojan.GenericKD.70025617
AvastFileRepMalware [Misc]
TencentMalware.Win32.Gencirc.13f76df9
EmsisoftTrojan.GenericKD.70025617 (B)
F-SecureWorm.WORM/Agent.lyrkn
VIPRETrojan.GenericKD.70025617
TrendMicroTROJ_GEN.R002C0XKJ23
SophosMal/Generic-S
VaristW32/ABRisk.QZQQ-3996
AviraWORM/Agent.lyrkn
KingsoftWin32.HeurC.KVM007.a
ZoneAlarmWorm.Win32.Agent.vyo
GDataTrojan.GenericKD.70025617
GoogleDetected
McAfeeArtemis!2B499A9CC10D
MAXmalware (ai score=80)
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0XKJ23
RisingMalware.FakeFolder/ICON!1.6AA9 (CLASSIC)
MaxSecureTrojan.Malware.139504.susgen
FortinetW32/Esaprof.C!tr
AVGFileRepMalware [Misc]
DeepInstinctMALICIOUS

How to remove Malware.AI.3893371236?

Malware.AI.3893371236 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment