Malware

About “Malware.AI.3916707661” infection

Malware Removal

The Malware.AI.3916707661 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3916707661 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Malware.AI.3916707661?


File Info:

name: 9A8BF71A5E6EDDB78AA9.mlw
path: /opt/CAPEv2/storage/binaries/dfbc5e00e753e956d9d9f5ba03d1bc7dfd556271ffca73694f0eaa77dc5cdb2b
crc32: F520524C
md5: 9a8bf71a5e6eddb78aa957b63e4350e7
sha1: 0cac049f80869a46424c3b0c36ec3dab8e1657ab
sha256: dfbc5e00e753e956d9d9f5ba03d1bc7dfd556271ffca73694f0eaa77dc5cdb2b
sha512: 7114536e4a4675b1dc779559c6309b324e177c098198344199148580758e14f17241aab269f6af74f8b345342ffb0904f71a99a722781f3e7c8566a72b93cf8d
ssdeep: 12288:zNNdjaVzdYTAnTi7QgiciKdsAqjXSIkPjpIV04S5DjfQI:2TiEgHlK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15AF4C86026FE5414E1739AF277D0B3619BAAAFEE22767FE850C07ECA4B017404D741AD
sha3_384: e9d8cbd34d86c7c9dbf02ee9fee84a4c173328ddd4bd46030e92595caf197727d0cc29b51ec6ad4eb80411b4eb5bfbd4
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-07-26 01:15:28

Version Info:

Translation: 0x0000 0x04b0
Comments: Windows 服务主进程
CompanyName: Microsoft Corporation
FileDescription: svchost.exe
FileVersion: 8.1.3.2145
InternalName: svchost.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: svchost.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 8.1.3.2145
Assembly Version: 2.9.5.4447

Malware.AI.3916707661 also known as:

BkavW32.AIDetectNet.01
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.MSIL.Krypt.!cdmip!.2
FireEyeGeneric.mg.9a8bf71a5e6eddb7
McAfeeArtemis!9A8BF71A5E6E
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZemsilF.34806.Tm0@aiFUznp
CyrenW32/Trojan.DIS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.AFDE
APEXMalicious
KasperskyUDS:Trojan.Win32.GenericML.xnet
BitDefenderGen:Heur.MSIL.Krypt.!cdmip!.2
AvastWin32:CrypterX-gen [Trj]
TencentTrojan.Win32.Coinminer.16000500
Ad-AwareGen:Heur.MSIL.Krypt.!cdmip!.2
SophosML/PE-A
VIPREGen:Heur.MSIL.Krypt.!cdmip!.2
McAfee-GW-EditionArtemis
Trapminesuspicious.low.ml.score
EmsisoftGen:Heur.MSIL.Krypt.!cdmip!.2 (B)
IkarusTrojan.MSIL.Crypt
AviraHEUR/AGEN.1248318
MAXmalware (ai score=83)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Heur.MSIL.Krypt.!cdmip!.2
CynetMalicious (score: 100)
Acronissuspicious
VBA32CIL.StupidStealth.Heur
ALYacGen:Heur.MSIL.Krypt.!cdmip!.2
MalwarebytesMalware.AI.3916707661
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Lazy.1756!tr
AVGWin32:CrypterX-gen [Trj]
Cybereasonmalicious.a5e6ed

How to remove Malware.AI.3916707661?

Malware.AI.3916707661 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment