Malware

Malware.AI.3954177013 removal tips

Malware Removal

The Malware.AI.3954177013 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3954177013 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Behavioural detection: Injection (Process Hollowing)
  • Behavioural detection: Injection (inter-process)
  • Creates a copy of itself

How to determine Malware.AI.3954177013?


File Info:

name: 4FD550CA554516E009C5.mlw
path: /opt/CAPEv2/storage/binaries/76432ddeadd0012172fbfbe3ba0bd8130ba0963c0ecbc3d34e761befde9cf974
crc32: D3992FBF
md5: 4fd550ca554516e009c54d158e72a8ca
sha1: c7dea03f25a1734411076caceb946d7dfc7a80f2
sha256: 76432ddeadd0012172fbfbe3ba0bd8130ba0963c0ecbc3d34e761befde9cf974
sha512: 535ee64c2f6955d33a572cb972116564d782b1ddeeb830ea42679a7d7d6b34f102796dc8be44f6fd84c4a439451e033c2255bf4b950fe90cbc42cbe99d82b1e9
ssdeep: 768:SzLoYj/s3MY2C162DG9pFz6uEpYJgiMgIf2aNBIFZCzccx5BXPoe:0MYQ3n2WTczxqYJgHf2aNBSZ5cx5Fv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11B03AE6B7DB0B723D0BC16300E9BB5118FA7C25E0D0A441B5E71D46588332E7A6F39AA
sha3_384: c0206d7a394c4bb9df94907c35c80561ad5f44b93aa4305a3f7705840a3aa7a2b42f42d42b3fd12f1cb15ffd74a6e1ce
ep_bytes: 68af0000006a4268e601000068cc0300
timestamp: 2010-12-25 10:35:00

Version Info:

0: [No Data]

Malware.AI.3954177013 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Powp.lmDC
Elasticmalicious (high confidence)
DrWebTrojan.Siggen3.48755
MicroWorld-eScanGen:Trojan.ProcessHijack.cqX@aOukb7m
FireEyeGeneric.mg.4fd550ca554516e0
CAT-QuickHealTrojanDownloader.Unruy.H
SkyhighBehavesLike.Win32.VirRansom.nc
McAfeeObfuscated-FBG!hb
Cylanceunsafe
ZillyaTrojan.Powp.Win32.22061
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0055e3991 )
AlibabaTrojan:Win32/CeeInject.f57c8a55
K7GWTrojan ( 0055e3991 )
Cybereasonmalicious.a55451
BitDefenderThetaAI:Packer.138E900E1E
VirITTrojan.Win32.Generic.AZDN
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DTR
APEXMalicious
TrendMicro-HouseCallTROJ_UNRUY.SMJF
AvastWin32:Dropper-gen [Drp]
ClamAVWin.Trojan.Powp-61
KasperskyTrojan.Win32.Powp.gen
BitDefenderGen:Trojan.ProcessHijack.cqX@aOukb7m
NANO-AntivirusTrojan.Win32.MLW.ihgug
SUPERAntiSpywareTrojan.Agent/Gen-Virut
TencentTrojan.Win32.Powp.aqcz
SophosMal/FakeAV-DH
F-SecureTrojan-Downloader:W32/Unruy.M
VIPREGen:Trojan.ProcessHijack.cqX@aOukb7m
TrendMicroTROJ_UNRUY.SMJF
Trapminemalicious.high.ml.score
EmsisoftGen:Trojan.ProcessHijack.cqX@aOukb7m (B)
IkarusTrojan.Win32.Powp
GDataGen:Trojan.ProcessHijack.cqX@aOukb7m
JiangminTrojan/Powp.aez
VaristW32/CeeInject.L.gen!Eldorado
AviraTR/Dropper.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Powp
KingsoftWin32.Trojan.Powp.gen
XcitiumTrojWare.Win32.Powp.Gen2@2ma5ww
ArcabitTrojan.ProcessHijack.E0B239
ViRobotTrojan.Win32.A.Powp.39940
ZoneAlarmTrojan.Win32.Powp.gen
MicrosoftTrojanDownloader:Win32/Unruy!pz
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Powp.R1697
ALYacGen:Trojan.ProcessHijack.cqX@aOukb7m
TACHYONTrojan/W32.Powp.39972
VBA32SScope.TrojanInjector.MY
MalwarebytesMalware.AI.3954177013
PandaTrj/CI.A
RisingTrojan.Win32.fedoN.fq (CLASSIC)
YandexTrojan.Powp!O3mvu+v70u0
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.QGA!tr
AVGWin32:Dropper-gen [Drp]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudTrojan[dropper]:Win/Powp.gen

How to remove Malware.AI.3954177013?

Malware.AI.3954177013 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment