Malware

Malware.AI.3912797216 malicious file

Malware Removal

The Malware.AI.3912797216 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3912797216 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Attempts to identify installed AV products by registry key
  • Anomalous binary characteristics

How to determine Malware.AI.3912797216?


File Info:

crc32: 77CB882F
md5: 039c771130f971ddfea8ee819f774b3d
name: 039C771130F971DDFEA8EE819F774B3D.mlw
sha1: b857ee0abae4b118abcc75965ea1e5c90867d8b8
sha256: 7506e211616cf8cb465c23c57896a14dd7035e9b63aff984605a51507b38085e
sha512: cff6ae65c71e7b511c0f57c7c7e67c379d50525ed704b8bed6c13ab30f14c068c40bff2e4fbc8ba68aab9e756846da14525cd826cff166de9f1e1982d22bb34d
ssdeep: 1536:4KL5lJLum/Pwci9GH43qatbBoEAqLxAFlXD1+c:4KLXJ69GReV7xA5D1+c
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: TeamViewer GmbH
InternalName: tv_loader
FileVersion: 7.0.12979.0
CompanyName: TeamViewer GmbH
ProductName: TeamViewer
ProductVersion: 7.0
FileDescription: Helper process for TeamViewer performance optimization and QuickConnect
OriginalFilename: tv_w32.exe
Translation: 0x0000 0x04b0

Malware.AI.3912797216 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053d9731 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen7.65113
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Heur.Mint.Jamg.1
CylanceUnsafe
ZillyaTrojan.NetStream.Win32.284
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Bunitu.ali1000105
K7GWTrojan ( 0053d9731 )
Cybereasonmalicious.130f97
CyrenW32/Trojan.BUF.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GTKI
APEXMalicious
AvastWin32:DangerousSig [Trj]
ClamAVWin.Dropper.Bunitu-7641474-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Heur.Mint.Jamg.1
NANO-AntivirusTrojan.Win32.Kryptik.fllhjz
MicroWorld-eScanGen:Heur.Mint.Jamg.1
TencentMalware.Win32.Gencirc.116d7bef
Ad-AwareGen:Heur.Mint.Jamg.1
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34670.tq1@a80JsIx
TrendMicroRansom.Win32.SHADE.SMB.hp
McAfee-GW-EditionTrickbot-FRDP!039C771130F9
FireEyeGeneric.mg.039c771130f971dd
EmsisoftGen:Heur.Mint.Jamg.1 (B)
AviraHEUR/AGEN.1105585
eGambitUnsafe.AI_Score_100%
MicrosoftTrojan:Win32/GandCrab.KDV!MTB
GDataGen:Heur.Mint.Jamg.1
AhnLab-V3Trojan/Win32.Kryptik.C2903035
McAfeeTrickbot-FRDP!039C771130F9
MAXmalware (ai score=100)
VBA32BScope.Trojan.NetStream
MalwarebytesMalware.AI.3912797216
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom.Win32.SHADE.SMB.hp
RisingTrojan.Kryptik!1.B56C (CLOUD)
YandexTrojan.GenAsa!weUkNFYlLWE
IkarusTrojan-Ransom.Crypted007
FortinetW32/Kryptik.GLWT!tr
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.GandCrab.HwoCEpsA

How to remove Malware.AI.3912797216?

Malware.AI.3912797216 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment