Malware

Malware.AI.3977045719 (file analysis)

Malware Removal

The Malware.AI.3977045719 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3977045719 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Malware.AI.3977045719?


File Info:

name: A59C35D45A2653F926D7.mlw
path: /opt/CAPEv2/storage/binaries/54e6543c6aa9fc7b37da03ce0e40d4abb12ce3c2a994e9384af85044ae75d63e
crc32: 02154F96
md5: a59c35d45a2653f926d71452c0886e06
sha1: 519ba6974c9eaf71dbbf4825adc5d4b77187e142
sha256: 54e6543c6aa9fc7b37da03ce0e40d4abb12ce3c2a994e9384af85044ae75d63e
sha512: 463057c6fd1047b4af44e67fc0b794a3bf388b15092dbc0c378410699063296da945a562758f343f25514c71dc4aa0c63f4b811f20c746885a2ea2c89bb0d001
ssdeep: 12288:ul3RaMMMMM2MMMMMzZuESK/LBayXQjADZthIEmbNbJ2KVg/9:ul3RaMMMMM2MMMMMtubSkMQjADZthIE1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D4D4174DF6B0C417E7BA19305AAB16D4F6A5BD028C25C39E178F363E2EF1A018C5536E
sha3_384: 652e8ac1de4fc8a85895063b7883b14b13305e5ea44f58e8c1bf85b06dd2b294f93db5bd61797de6d59d28fd699f84a8
ep_bytes: b8904d000083c997ebaa000000abf500
timestamp: 2001-08-17 20:47:38

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Outlook Express
FileVersion: 6.00.2600.0000 (xpclient.010817-1148)
InternalName: MSIMN
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: MSIMN.EXE
ProductName: Microsoft® Windows® Operating System
ProductVersion: 6.00.2600.0000
Translation: 0x0409 0x04b0

Malware.AI.3977045719 also known as:

BkavW32.AIDetect.malware2
tehtrisGeneric.Malware
MicroWorld-eScanWin32.Virtob.Gen.12
FireEyeGeneric.mg.a59c35d45a2653f9
CAT-QuickHealW32.Virut.G
McAfeeW32/Virut.rem.K
CylanceUnsafe
VIPREWin32.Virtob.Gen.12
K7AntiVirusVirus ( f10002001 )
K7GWVirus ( f10002001 )
Cybereasonmalicious.45a265
BaiduWin32.Virus.Virut.g
VirITWin32.Shohdi.A
CyrenW32/Virut.AI!Generic
SymantecW32.Virut.CF
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan-Ransom.Win32.PornoBlocker
BitDefenderWin32.Virtob.Gen.12
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
AvastWin32:Sector [Inf]
Ad-AwareWin32.Virtob.Gen.12
SophosMal/Generic-S
DrWebmodification of Win32.Virut.56
ZillyaTrojan.Kryptik.Win32.822262
TrendMicroPE_VIRUX.S-3
McAfee-GW-EditionBehavesLike.Win32.Virut.jh
Trapminemalicious.high.ml.score
EmsisoftWin32.Virtob.Gen.12 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Virtob.Gen.12
JiangminTrojan.PornoBlocker.fi
AviraTR/Patched.Gen
Antiy-AVLTrojan/Generic.ASVirus.303
ArcabitWin32.Virtob.Gen.12
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
BitDefenderThetaAI:FileInfector.C9457D4313
MAXmalware (ai score=86)
VBA32Virus.Virut.02
MalwarebytesMalware.AI.3977045719
TrendMicro-HouseCallPE_VIRUX.S-3
RisingVirus.Shodi!1.9B9C (CLASSIC)
IkarusVirus.Win32.Virut
MaxSecurevirus.shohdi.i
FortinetW32/Virut.CE
AVGWin32:Sector [Inf]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.3977045719?

Malware.AI.3977045719 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment