Malware

How to remove “Malware.AI.3941689087”?

Malware Removal

The Malware.AI.3941689087 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3941689087 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Detects Joe or Anubis Sandboxes through the presence of a file
  • Anomalous binary characteristics

How to determine Malware.AI.3941689087?


File Info:

name: 951BED05DAD7A862C9E2.mlw
path: /opt/CAPEv2/storage/binaries/8775d0fb31910752b3987c34e750200c5914edfef90b5d10d52ec89376d2c73e
crc32: 65B6EEFA
md5: 951bed05dad7a862c9e2603aba8973a0
sha1: 73098218ba4dcb45af52cfb93273fb483a3aa1fa
sha256: 8775d0fb31910752b3987c34e750200c5914edfef90b5d10d52ec89376d2c73e
sha512: 8ed354c97f6288bb552ae72a84e4b75d8c09196ceea98ad4406c304d705bf241621a9111c271e128506575cfa8876cb6b664e7dbf832ce1cb7e3004654118864
ssdeep: 192:DcTrBTVdZzgW+mpWpc9aThFJJRmqSg9iu:c7EmpWpc9aThFVviu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T103F1C60EBD428033C7AD0EB01EA281995F7E1AA33B8550BFBF9751ED4BD144698815EE
sha3_384: f36b11f6cbea3c4f096af74c22d30012510f42613cd6eb978e014770e490001dabe85cfb53d2bb10ef76e961d7c071cb
ep_bytes: e878040000e937fdffff8bff558bec81
timestamp: 2017-12-04 13:14:24

Version Info:

0: [No Data]

Malware.AI.3941689087 also known as:

LionicTrojan.Win32.Zapchast.4!c
Elasticmalicious (high confidence)
McAfeeGenericRXAA-AA!951BED05DAD7
CylanceUnsafe
ZillyaTrojan.Zapchast.Win32.127229
BitDefenderThetaGen:NN.ZexaF.34062.auX@ayTTcHci
TrendMicro-HouseCallTROJ_GEN.R002H0CL421
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Zapchast.gen
NANO-AntivirusTrojan.Win32.Zapchast.hylppc
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.10ce43dc
GDataWin32.Trojan.Agent.X93YK0
JiangminTrojan.Zapchast.nm
AviraHEUR/AGEN.1206823
Antiy-AVLTrojan/Generic.ASMalwS.30F2022
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 99)
VBA32Trojan.Wacatac
MalwarebytesMalware.AI.3941689087
APEXMalicious
RisingTrojan.Generic@ML.81 (RDML:pkKtYmtna+C7M5efk5jz9A)
YandexTrojan.Zapchast!44cQTF+QApk
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.1473518.susgen
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Malware.AI.3941689087?

Malware.AI.3941689087 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment