Malware

Malware.AI.3935617572 (file analysis)

Malware Removal

The Malware.AI.3935617572 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3935617572 virus can do?

  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.3935617572?


File Info:

name: A67D591CC467A9901CEC.mlw
path: /opt/CAPEv2/storage/binaries/a30bec1edb6e946f6e1e36c284a86a4a0a399ceb50f034cd773d0cd0cb700a6d
crc32: 52D2C018
md5: a67d591cc467a9901cecabfb3b3b85bb
sha1: c943163340c70f0309e759b9a0caa46aa75af955
sha256: a30bec1edb6e946f6e1e36c284a86a4a0a399ceb50f034cd773d0cd0cb700a6d
sha512: 73b7a67aa4654ac7ce5832b701960f972ae66718dcece0bac37dc05061d5aa77017700bc6a724b07d27a3d71c3628a3d209d61e604b94173a785c5cf345c0d26
ssdeep: 768:Cv1zcglL/Q0xcVKINSBvIqOfhGBQHz5Z73mhlx9lZfwlx94:+4g5oNMIABIqOfMBQzMl3wlg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T150035C11B786C66CF1770731AB3346004275FEA99DA1CF9C3AA875885873B621DA3B73
sha3_384: 6dc224ecd633e34c7520b2ade89ddf673c791ab0c0c9756ab7eb8906d318cec16db67d0bc8e5c30162f698995cd4a050
ep_bytes: ff250020400000000000000000000000
timestamp: 2047-05-25 20:45:32

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: CS Warzone Launcher
FileVersion: 1.0.0.0
InternalName: test.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: test.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.3935617572 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.DOTHETUK.4!c
MicroWorld-eScanGen:Variant.Lazy.326791
FireEyeGen:Variant.Lazy.326791
McAfeeArtemis!A67D591CC467
MalwarebytesMalware.AI.3935617572
SangforTrojan.Win32.Dothetuk.Vtxn
CyrenW32/ABRisk.DCDW-1261
SymantecTrojan.Gen.2
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.MSIL.DOTHETUK.gen
BitDefenderGen:Variant.Lazy.326791
AvastWin32:TrojanX-gen [Trj]
SophosMal/Generic-S
F-SecureTrojan.TR/Dothetuk.lsswg
VIPREGen:Variant.Lazy.326791
McAfee-GW-EditionArtemis!Trojan
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Lazy.326791 (B)
GDataGen:Variant.Lazy.326791
AviraTR/Dothetuk.lsswg
ArcabitTrojan.Lazy.D4FC87
ZoneAlarmHEUR:Trojan.MSIL.DOTHETUK.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
ALYacGen:Variant.Lazy.326791
MAXmalware (ai score=81)
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H09DA23
RisingTrojan.DOTHETUK!8.E40A (CLOUD)
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Malware.AI.3935617572?

Malware.AI.3935617572 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment