Malware

About “Malware.AI.3450396946” infection

Malware Removal

The Malware.AI.3450396946 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3450396946 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Queries information on disks, possibly for anti-virtualization
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.3450396946?


File Info:

crc32: 9A146F54
md5: 1eac6135eaf220361a43674a8cf4801e
name: 1EAC6135EAF220361A43674A8CF4801E.mlw
sha1: ccf641984e0eac40c45cf8203c4fffde72ed3ad6
sha256: 86bd703c569a2a93ef25ea9e500a158433a3c03276ed40b803e53a3c18cdb904
sha512: fa635be027e5d74bb8746a92f37379bc72e6670041fdfd54ccb807b215fa161f5842aeb32f89dc50294c1766e5ce1fa957513e7cd6d7fb8e971d2af8d4c227b4
ssdeep: 6144:6JKji7UsYqwrwTTLLC2DLj3RwajATKwHy4xd1WcKyADqCSiGM14OrjWuxnM:6JKji1YqwrYpHHEmf49vHb6GM1PrjWy
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.3450396946 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0040eff41 )
Elasticmalicious (high confidence)
DrWebTrojan.Fakealert.27106
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaDropper.Dapato.Win32.3231
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Bulta.87d53c88
K7GWTrojan ( 0040eff41 )
Cybereasonmalicious.5eaf22
CyrenW32/FakeAlert.DX.gen!Eldorado
SymantecTrojan.FakeAV
ESET-NOD32a variant of Win32/Kryptik.XVC
APEXMalicious
TotalDefenseWin32/Winwebsec.B!generic
AvastWin32:MalOb-GE [Cryp]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.FAkeAlert.105
NANO-AntivirusTrojan.Win32.Fakealert.coongj
ViRobotTrojan.Win32.A.FakeAV.386048.J
SUPERAntiSpywareTrojan.Agent/Gen-FakeAV
MicroWorld-eScanGen:Variant.FAkeAlert.105
TencentMalware.Win32.Gencirc.10b73f3a
Ad-AwareGen:Variant.FAkeAlert.105
SophosML/PE-A + Mal/FakeAV-KL
ComodoTrojWare.Win32.Kryptik.DCE@4ls7qr
BitDefenderThetaGen:NN.ZexaF.34608.xyW@aOA7@Dmk
VIPRETrojan.Win32.Fakeav.pb (v)
TrendMicroTROJ_FKEAV.SMET
McAfee-GW-EditionBehavesLike.Win32.Backdoor.fc
FireEyeGeneric.mg.1eac6135eaf22036
EmsisoftGen:Variant.FAkeAlert.105 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Rogue.Gen
AviraTR/Dropper.Gen
MicrosoftRansom:Win32/Blocker
GDataGen:Variant.FAkeAlert.105
TACHYONTrojan-Clicker/W32.Fakealert.386048.K
AhnLab-V3Trojan/Win32.FakeAV.R18277
Acronissuspicious
McAfeeFakeAV-SecurityTool.jc
MAXmalware (ai score=89)
VBA32TrojanDropper.Dapato
MalwarebytesMalware.AI.3450396946
PandaTrj/Resdec.d
TrendMicro-HouseCallTROJ_FKEAV.SMET
RisingRogue.Winwebsec!8.B21 (TFE:5:q8hUQtxG6KH)
IkarusTrojan-Ransom.HmBlocker
FortinetW32/FakeAlert.BT!tr
AVGWin32:MalOb-GE [Cryp]
Paloaltogeneric.ml
Qihoo-360Win32/TrojanDropper.Generic.HwgAojsA

How to remove Malware.AI.3450396946?

Malware.AI.3450396946 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment