Malware

Should I remove “Malware.AI.3940662996”?

Malware Removal

The Malware.AI.3940662996 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3940662996 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3940662996?


File Info:

name: BA202DD3EEA019AA16DD.mlw
path: /opt/CAPEv2/storage/binaries/900f5814928606c98d51e3250c4f8c90b741c9e7da0b7b27a3d01b8c6d843e54
crc32: A934F540
md5: ba202dd3eea019aa16ddb921872ec158
sha1: 213beee70253eb4f86fa7e8ab5d1fb9b792fc2a1
sha256: 900f5814928606c98d51e3250c4f8c90b741c9e7da0b7b27a3d01b8c6d843e54
sha512: 863729d9232ab644b280307df7c99bddc3f72a1319772f9088df4811bfcfd4221b8c3c1c7ee6cd5ee19947bdaa9c3228939ef811d9614756e1645e358840f2e2
ssdeep: 6144:TqZo1WFgrHS/CojqyLttVtDTHwasLChM/zcEbfQWpUshCaPldsvQZNdYbjGiCbxN:eoz6Cojq6LDtoCUbfQWpWkseX4lz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19BD41543E33944AAD5D04CBC244668ECE0FF3973D225C4C68E52A6AB54C5FE52CAE1E7
sha3_384: f4cad560dec342aa2e944e5ad5508e1de005d9151059a23de15f227214888763535c8ba05a1e2902e7f87890ac558c37
ep_bytes: e8d5240000e908f40600ff742404e8df
timestamp: 2014-03-20 16:55:26

Version Info:

FileVersion: 1.0.2.1
ProductVersion: 1.0.2.0
CompanyName: Missan Corp.
LegalCopyright: Missan Corp 1999-2003
ProductName: prosat
Translation: 0x0413 0x04e3

Malware.AI.3940662996 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Zusy.88777
ClamAVWin.Malware.Zbot-9976628-0
FireEyeGeneric.mg.ba202dd3eea019aa
ALYacGen:Variant.Zusy.88777
CylanceUnsafe
ZillyaTrojan.Zbot.Win32.185673
SangforTrojan.Win32.Save.a
K7AntiVirusSpyware ( 004b8cd91 )
K7GWSpyware ( 004b8cd91 )
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZexaF.34784.Lq0@aOqEyyei
VirITTrojan.Win32.Zbot.GSZ
CyrenW32/A-54a9cbe9!Eldorado
SymantecTrojan.Zbot!gen75
Elasticmalicious (high confidence)
ESET-NOD32Win32/Spy.Zbot.AAU
BaiduWin32.Trojan-Downloader.Waski.a
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.88777
NANO-AntivirusTrojan.Win32.Zbot.cwbnxm
SUPERAntiSpywareTrojan.Agent/Gen-Dynamer
AvastWin32:Agent-ATFC [Trj]
TencentMalware.Win32.Gencirc.10b20e42
Ad-AwareGen:Variant.Zusy.88777
TACHYONTrojan-Spy/W32.ZBot.607232.Q
SophosML/PE-A + Mal/Zbot-PT
ComodoTrojWare.Win32.TrojanDropper.Necurs.TZC@59dw45
DrWebTrojan.PWS.Panda.5676
VIPREGen:Variant.Zusy.88777
TrendMicroTROJ_KRYPTIC.SMV
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Zusy.88777 (B)
IkarusTrojan-Spy.Agent
GDataGen:Variant.Zusy.88777
JiangminTrojan/Generic.bjndc
AviraTR/Spy.Zbot.xixm
Antiy-AVLTrojan[Spy]/Win32.Zbot
ArcabitTrojan.Zusy.D15AC9
MicrosoftPWS:Win32/Zbot
GoogleDetected
AhnLab-V3Trojan/Win32.Zbot.R103156
Acronissuspicious
McAfeePWSZbot-FUO!BA202DD3EEA0
MAXmalware (ai score=89)
VBA32TrojanSpy.Zbot
MalwarebytesMalware.AI.3940662996
TrendMicro-HouseCallTROJ_KRYPTIC.SMV
RisingSpyware.Zbot!8.16B (TFE:5:ZdANy5O4QwO)
YandexTrojanSpy.Zbot!Zw1WYbSWhAg
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Wonton.AQ!tr
AVGWin32:Agent-ATFC [Trj]
Cybereasonmalicious.3eea01
PandaTrj/Genetic.gen

How to remove Malware.AI.3940662996?

Malware.AI.3940662996 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment