Malware

What is “Malware.AI.3934533302”?

Malware Removal

The Malware.AI.3934533302 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3934533302 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Behavioural detection: Injection (inter-process)
  • Creates a copy of itself

How to determine Malware.AI.3934533302?


File Info:

name: 1F1E6409FCC0E86166D3.mlw
path: /opt/CAPEv2/storage/binaries/dd92174f158778849f81f6971b7bc9bbda7d737b6911f50c19212fb0e728bebf
crc32: C550DBA0
md5: 1f1e6409fcc0e86166d38b774d9839cb
sha1: 1a2646956267a6be2fac6346ad9576fe9b62b7c0
sha256: dd92174f158778849f81f6971b7bc9bbda7d737b6911f50c19212fb0e728bebf
sha512: b7bbcc8a893ee18aeeb21901f1a6f218f692771fff35c7c298226f53d258cbd3ae11c53185f8356a36ab17a631377969b449add1fa603d8bb1e73d2444e6319a
ssdeep: 12288:GzVqpGq0G492n5AulBhYtLZsMxNWFHue1myE/I4xIsy48Tiyg+TFhzbCAJ:GhqtJ494ytLFxo3Pi1xhy48TtzaE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17DD412F335528C2CC81A0633C466B4D077BA7D563AA7C62EB1DD530D0F707EAA7056AA
sha3_384: fae8fcd23bc3ceae16d7fdbf40ee8d4717479cc4ba750785c1e37ca8b6d77c090698539871b05a2328e4d58c7fa48c5d
ep_bytes: ff250020400000000000000000000000
timestamp: 2016-03-03 16:56:02

Version Info:

Translation: 0x0000 0x04b0
CompanyName: Milton Jason
FileDescription: genranit
FileVersion: 4.6.1055.0
InternalName: genranit.exe
LegalCopyright: © MC. All rights reserved.
OriginalFilename: genranit.exe
ProductName: Microsoft® .NET Framework
ProductVersion: 4.6.1055.0
Assembly Version: 4.0.0.0

Malware.AI.3934533302 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.MSIL.BlueWushu.4!c
MicroWorld-eScanIL:Trojan.MSILZilla.96118
ALYacIL:Trojan.MSILZilla.96118
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.33549
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004dfe2c1 )
AlibabaTrojan:MSIL/BlueWushu.0fe17c96
K7GWTrojan ( 004dfe2c1 )
Cybereasonmalicious.9fcc0e
CyrenW32/MSIL_Injector.CA.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Injector.OJT
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.MSIL.BlueWushu.gen
BitDefenderIL:Trojan.MSILZilla.96118
NANO-AntivirusTrojan.Win32.Generic.eattty
SUPERAntiSpywareTrojan.Agent/Gen-Injector
AvastWin32:MalwareX-gen [Trj]
TencentMalware.Win32.Gencirc.12027872
Ad-AwareIL:Trojan.MSILZilla.96118
TACHYONRansom/W32.DN-Blocker.628224.B
EmsisoftIL:Trojan.MSILZilla.96118 (B)
ComodoMalware@#3iy64o4r1mp8x
DrWebTrojan.DownLoader19.40438
VIPREIL:Trojan.MSILZilla.96118
TrendMicroTROJ_SKEEYAH.USXD
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.1f1e6409fcc0e861
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataIL:Trojan.MSILZilla.96118
JiangminTrojan.Blocker.btk
AviraHEUR/AGEN.1202151
Antiy-AVLTrojan/Generic.ASMalwS.3E79
KingsoftWin32.Troj.Undef.(kcloud)
ViRobotTrojan.Win32.Z.Injector.628224.D
MicrosoftTrojan:Win32/Skeeyah.A!rfn
GoogleDetected
AhnLab-V3Trojan/Win32.MSILPerseus.R175888
Acronissuspicious
McAfeeFareit-FDJ!1F1E6409FCC0
MAXmalware (ai score=100)
MalwarebytesMalware.AI.3934533302
TrendMicro-HouseCallTROJ_SKEEYAH.USXD
RisingMalware.Obfus/MSIL@AI.97 (RDM.MSIL:xyCWHKRXGcP/w8y6EFtcDw)
YandexTrojan.Blocker!LcUawksB26U
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Generic.DN.2C17E!tr
BitDefenderThetaGen:NN.ZemsilF.34592.Mm0@aitk7Qe
AVGWin32:MalwareX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.3934533302?

Malware.AI.3934533302 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment