Malware

Malware.AI.3529462254 removal instruction

Malware Removal

The Malware.AI.3529462254 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3529462254 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.3529462254?


File Info:

name: 4AEF5E48A307D3F56A03.mlw
path: /opt/CAPEv2/storage/binaries/8d5fde60b8c81cd01669b480ec1178072fc066050e93909e52ac3d03e6de8bed
crc32: B1A9FABE
md5: 4aef5e48a307d3f56a0301cb1ac5f679
sha1: 7ee30a271fd0372ddaea29ca075cba7593249439
sha256: 8d5fde60b8c81cd01669b480ec1178072fc066050e93909e52ac3d03e6de8bed
sha512: 7db81e956d09930ce661912ceb6ea12e74e47d2259937798e83d97b75f21deb1303c2018c8e96fb9374411afe4cc821038f4477e382fdb8b59a65404fc9fe67c
ssdeep: 3072:dRcasOUTAqXa1dTJTcOVKCLGLVSxsuNPGXh8mi3CDZlg32he7wg2K1V/UYujVZyu:T
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BCD416E0C57E2E90DA8872A1E51D5655E82113D26FA3F23580911A33E27FE8FCDD9D23
sha3_384: 5ceeba9d4633287b360e0f45ddbba4540916ed798a2f3fe3931b09ca5c0cc3014b69974f7cacda7634a97eb2f549b1b0
ep_bytes: ff250020400000000000000000000000
timestamp: 2095-11-14 13:55:34

Version Info:

Translation: 0x0000 0x04b0
Comments: Windows Security Healths Host
CompanyName: Microsoft Corporetion
FileDescription: SecurityHealth
FileVersion: 15.4.21.23
InternalName: SecurityHealth.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
LegalTrademarks:
OriginalFilename: SecurityHealth.exe
ProductName: Microsoft Windows Operating Systems
ProductVersion: 15.4.21.23
Assembly Version: 15.4.21.23

Malware.AI.3529462254 also known as:

BkavW32.Common.A607E312
LionicTrojan.Win32.Agent.Y!c
DrWebBackDoor.SiggenNET.71
MicroWorld-eScanTrojan.GenericKD.68862996
FireEyeGeneric.mg.4aef5e48a307d3f5
ALYacTrojan.GenericKD.68862996
Cylanceunsafe
ZillyaTrojan.Kryptik.Win32.4319237
SangforBackdoor.Msil.Kryptik.Vvql
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:MSIL/Kryptik.455dd191
K7GWTrojan ( 004dd8931 )
K7AntiVirusTrojan ( 004dd8931 )
BitDefenderThetaGen:NN.ZemsilF.36662.Mm0@a8P4x7g
CyrenW32/ABRisk.KKNR-2575
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Kryptik.FAS
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Backdoor.MSIL.Agent.gen
BitDefenderTrojan.GenericKD.68862996
NANO-AntivirusTrojan.Win32.Kryptik.edtjdl
AvastWin32:CrypterX-gen [Trj]
TencentMalware.Win32.Gencirc.13ecb319
EmsisoftTrojan.GenericKD.68862996 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPRETrojan.GenericKD.68862996
TrendMicroTROJ_GEN.R06CC0XHR23
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusTrojan.MSIL.Crypt
GDataTrojan.GenericKD.68862996
WebrootW32.Malware.Gen
AviraTR/Dropper.Gen
Antiy-AVLTrojan/MSIL.Kryptik
ArcabitTrojan.Generic.D41AC414
ZoneAlarmHEUR:Backdoor.MSIL.Agent.gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C5474953
McAfeeArtemis!4AEF5E48A307
MAXmalware (ai score=82)
MalwarebytesMalware.AI.3529462254
TrendMicro-HouseCallTROJ_GEN.R06CC0XHR23
RisingMalware.Obfus/MSIL@AI.98 (RDM.MSIL2:Fotjulzc/7QgZR6zQQHM6g)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.11035479.susgen
FortinetMSIL/Kryptik.FAS!tr
AVGWin32:CrypterX-gen [Trj]
Cybereasonmalicious.71fd03
DeepInstinctMALICIOUS

How to remove Malware.AI.3529462254?

Malware.AI.3529462254 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment