Malware

Malware.AI.3602904401 removal guide

Malware Removal

The Malware.AI.3602904401 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3602904401 virus can do?

  • Uses Windows utilities for basic functionality
  • Uses MODE to configure a system device or change the code page
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.3602904401?


File Info:

name: 460C15CC08E53373686E.mlw
path: /opt/CAPEv2/storage/binaries/3b40eb6afd848498dc1c55e07cbae0878c1991364105a0335c0d7a1c19f970b3
crc32: DDE3A871
md5: 460c15cc08e53373686e60cdb9ed551f
sha1: 84558799fb6c9817e6a6d4c242d79c7f391a86fa
sha256: 3b40eb6afd848498dc1c55e07cbae0878c1991364105a0335c0d7a1c19f970b3
sha512: 8fef74b557d52dd05a2d852a77432eb6cb0f63dee9df279ef2805d519061ccb3f949ba63863e96ab8b33bf0ff76af7d19aa743c55597e8ec9f05e0c472f0914d
ssdeep: 384:8PRizODpIBzGJFkTny7K6TYUiVsTA3VgVBlKgyBVuqjoYpjTWQ:8pSmIF0Fgy7K4YEtygydo8WQ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11692BF46B28A0E17E39F2F7A86B18AE81064BE114662A7F0358377051B745749F3DB1F
sha3_384: 31bea4a7e34298d2e3bcabdb56d82134ef80665855a32f5a0a7fa6e2174385f0b2d2ee434878e53753cd7036362d5d40
ep_bytes: 60e80000000058059f0200008b3003f0
timestamp: 2022-03-18 16:38:45

Version Info:

CompanyName: H Hayat
FileDescription: ezPayCheck 2022 [Keygen]
FileVersion: 1.1.0.0
InternalName: Keygen.exe
LegalCopyright: Copyrigth © 2022 H Hayat
OriginalFilename: Keygen.exe
ProductName: ezPayCheck 2022 [Keygen]
ProductVersion: 1.1.0.0
Translation: 0x0409 0x04b0

Malware.AI.3602904401 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
FireEyeGeneric.mg.460c15cc08e53373
SkyhighBehavesLike.Win32.Generic.mc
McAfeeRDN/Generic Downloader.x
SangforTrojan.Win32.Agent.Vji3
AlibabaTrojan:Win32/Generic.cc52029a
tehtrisGeneric.Malware
APEXMalicious
AvastWin32:Malware-gen
SentinelOneStatic AI – Suspicious PE
VaristW32/ABRisk.EOAH-4409
Antiy-AVLTrojan/Win32.SGeneric
GoogleDetected
AhnLab-V3Malware/Win.Downloader.C5051586
MalwarebytesMalware.AI.3602904401
TrendMicro-HouseCallTROJ_GEN.R002H0CIS23
YandexPacked/MPress
MaxSecureTrojan.Malware.195530180.susgen
FortinetW32/Dloader.X!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.3602904401?

Malware.AI.3602904401 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment