Malware

Malware.AI.3969913321 removal

Malware Removal

The Malware.AI.3969913321 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3969913321 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.3969913321?


File Info:

name: ED410F0816182ABE151B.mlw
path: /opt/CAPEv2/storage/binaries/ecf672cdc562dabab2e97bbf789ca010675b12b907f6595ab6419a6653f16500
crc32: EC4210E8
md5: ed410f0816182abe151b7456d9325d7f
sha1: 78700ea9515d4ea7d5807ed064863b998ca26efe
sha256: ecf672cdc562dabab2e97bbf789ca010675b12b907f6595ab6419a6653f16500
sha512: 62f93d960797051d3fbe16a1756686bb63e6fa2c56ad1472589ca0d40f7830f94a2a932607389628567c400c37aa3d140cb6e8c9ca37e104e18cbbc025ea9e41
ssdeep: 98304:0B4lZeovCSK/UjzpUK9UUxiYC5kiUmpecDgqPBF:0BJo6SXDzi3zUhcB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AD06236752262289D1D5CD3AB637FD92F1F303AA4A826C745ADA7FC135864F4E603B03
sha3_384: 500321c1ea7665f443c36dd1a02a73e0b33b2186d427bada0f26375d6e628c30c40847c54d1e5281940bc30482b160ce
ep_bytes: e84a580300f7da8b1781c70400000033
timestamp: 2013-08-02 12:16:53

Version Info:

FileVersion: 2,2,0,7
InternalName: cmrw.rc

Malware.AI.3969913321 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.Y!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.66470744
FireEyeGeneric.mg.ed410f0816182abe
CAT-QuickHealTrojan.Sabsik
McAfeeArtemis!ED410F081618
Cylanceunsafe
ZillyaTrojan.VMProtect.Win32.79346
SangforTrojan.Win32.Packed.V851
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaPacked:Win32/VMProtect.27ee423b
K7GWTrojan ( 0059f3ca1 )
K7AntiVirusTrojan ( 0059f3ca1 )
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Packed.VMProtect.AU suspicious
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKD.66470744
AvastWin32:Malware-gen
SophosGeneric Reputation PUA (PUA)
F-SecureTrojan.TR/Crypt.XPACK.Gen
VIPRETrojan.GenericKD.66470744
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKD.66470744 (B)
IkarusTrojan.Win32.FakeAV
GDataTrojan.GenericKD.66470744
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan[Packed]/Win32.VMProtect
ArcabitTrojan.Generic.D3F64358
MicrosoftTrojan:Win32/Tiggre!rfn
GoogleDetected
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36164.PF0@aGxOPRji
ALYacTrojan.GenericKD.66470744
MAXmalware (ai score=84)
MalwarebytesMalware.AI.3969913321
TrendMicro-HouseCallTROJ_GEN.R002H09DJ23
RisingTrojan.Generic@AI.100 (RDML:XRxdr+Yb/VZL4lE2quQIcA)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.206378977.susgen
FortinetRiskware/Application
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.3969913321?

Malware.AI.3969913321 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment