Malware

About “Malware.AI.3959570637” infection

Malware Removal

The Malware.AI.3959570637 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3959570637 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Malware.AI.3959570637?


File Info:

name: DFBA109F39E150B9A5D3.mlw
path: /opt/CAPEv2/storage/binaries/dad583e2c55635d76bdff4ed8be940be9a6d1a89daec370def209f321f67fd59
crc32: 13B9D4AD
md5: dfba109f39e150b9a5d309c0d4f091e6
sha1: ea0528b3abd2e962960fadd12a2c84830c89ccf5
sha256: dad583e2c55635d76bdff4ed8be940be9a6d1a89daec370def209f321f67fd59
sha512: 6dcef6327082e5a6e5e4633dc73be355cdeef8c4267d01f0a559f3440a3baf10defc80d780e4c1ccb5ba48f6d71355b50f7d087ea3a5ce53bb7336cde97859e9
ssdeep: 6144:qYf1XLNOXzN6zKcBtaRRdXqWOyolXzN6zK3B2ZcquTLoyR:qaNOXzNOtmRdXqPyolXzNhwpuThR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FAC428666A85CD11C4B209385E20A4EC4FD5BDD9FA2D4A07BF7E762EF7B2141383058B
sha3_384: cec938b8dbe4ac42eceaa80b9641b516382522d776cae914164583d0eccae7b10aa05c4d4589fcb3e6a88336a2e4cb05
ep_bytes: 684cd14000e8eeffffff000000000000
timestamp: 2022-07-05 04:44:43

Version Info:

CompanyName: Microsoft
FileDescription: 河北干部网络学院助手
ProductName: 河北干部网络学院助手
FileVersion: 1.0.0.0
ProductVersion: 1.0.0.0
InternalName: 河北zf干部网络学院助手
OriginalFilename: 河北zf干部网络学院助手.exe
Translation: 0x0804 0x04b0

Malware.AI.3959570637 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Tedy.4!c
DrWebBACKDOOR.Trojan
MicroWorld-eScanGen:Variant.Tedy.10803
SkyhighBehavesLike.Win32.Infected.hm
McAfeeArtemis!DFBA109F39E1
MalwarebytesMalware.AI.3959570637
VIPREGen:Variant.Tedy.10803
SangforTrojan.Win32.Agent.Vu4m
BitDefenderGen:Variant.Tedy.10803
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36792.Im0@aeWHJblb
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
AlibabaBackdoor:Win32/Generic.c038f385
SophosMal/Generic-S
F-SecureTrojan.TR/Dropper.Gen
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.dfba109f39e150b9
EmsisoftGen:Variant.Tedy.10803 (B)
IkarusTrojan.Dropper
MAXmalware (ai score=84)
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Tedy.D2A33
GDataGen:Variant.Tedy.10803
CynetMalicious (score: 100)
ALYacGen:Variant.Tedy.10803
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H09J923
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.144492253.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
Cybereasonmalicious.3abd2e
AvastWin32:Malware-gen

How to remove Malware.AI.3959570637?

Malware.AI.3959570637 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment