Malware

Should I remove “Malware.AI.3620854650”?

Malware Removal

The Malware.AI.3620854650 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3620854650 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Guard pages use detected – possible anti-debugging.
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Korean
  • Authenticode signature is invalid
  • Created a process from a suspicious location
  • Installs itself for autorun at Windows startup
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.3620854650?


File Info:

name: 85B713DD14E60F0A8B0E.mlw
path: /opt/CAPEv2/storage/binaries/72e6ea1396f27c0a06cdbce92b1d61c1aac1679c97a75694ffde027f82ceef61
crc32: 38A17BBE
md5: 85b713dd14e60f0a8b0e1407a878d556
sha1: 106bc46315db8d1f9185b26839902160025c8519
sha256: 72e6ea1396f27c0a06cdbce92b1d61c1aac1679c97a75694ffde027f82ceef61
sha512: 19e80a8b94ca222a9ef7a68ab1fdaac444b275c922b8734774c33d9e7252d2d5d98314efdbcf5c401d0bfed3a01b583d3cb6c278b83408cce13ba7020fc96d24
ssdeep: 768:aSmX23j2wsnkJ81tDxPIgWOSxst2ZU9QZU9j:YXkj2wMT1tlwgT3t2zg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12A93E4122A408465F35D4B305956FAD00AAB9E3C15E4F28FF67CBD3A6D321836A7724F
sha3_384: 7f50ed567fab6006d1f27e15c43eb3916982ec7b38bbf89b615785daee7228a08aad38a46e28680e42efe14fdfe11f2f
ep_bytes: 6a6068a0714000e82e0d0000bf940000
timestamp: 2011-12-20 17:10:59

Version Info:

CompanyName: mendlup
FileDescription: mendlup
FileVersion: 1, 0, 0, 616
InternalName: mendlup
LegalCopyright: Copyright (c)
OriginalFilename: mendlup.exe
ProductName: mendlup
ProductVersion: 1, 0, 0, 616
Translation: 0x0412 0x04b0

Malware.AI.3620854650 also known as:

LionicTrojan.Win32.Dapato.b!c
DrWebTrojan.KillProc.14231
MicroWorld-eScanGen:Variant.Mikey.72713
FireEyeGen:Variant.Mikey.72713
McAfeeArtemis!85B713DD14E6
CylanceUnsafe
ZillyaDropper.Dapato.Win32.8449
SangforTrojan.Win32.Generic.ky
K7AntiVirusTrojan ( 00530b2e1 )
AlibabaTrojan:Win32/KillProc.b92da95f
K7GWTrojan ( 00530b2e1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.34182.fq0@aWmjslkG
VirITTrojan.Win32.Dhupad.H
CyrenW32/Dapato.IKLT-8029
SymantecTrojan.Gen
ESET-NOD32Win32/KillProc.NBK
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Kuluoz-1055
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Mikey.72713
NANO-AntivirusTrojan.Win32.Dapato.pxpwz
AvastFileRepMalware
TencentMalware.Win32.Gencirc.116b33bc
EmsisoftGen:Variant.Mikey.72713 (B)
ComodoMalware@#18nl9idqqyzia
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0OAV22
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusTrojan-Dropper.Win32.Dapato
JiangminTrojanDropper.Dapato.gbt
WebrootW32.Malware.Gen
AviraTR/Graftor.25786.34
MAXmalware (ai score=100)
Antiy-AVLTrojan[Dropper]/Win32.Dapato
MicrosoftTrojan:Win32/Wacatac.B!ml
ViRobotDropper.Dapato.94208
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Mikey.72713
CynetMalicious (score: 99)
VBA32BScope.Backdoor.Poison
ALYacGen:Variant.Mikey.72713
MalwarebytesMalware.AI.3620854650
TrendMicro-HouseCallTROJ_GEN.R002C0OAV22
RisingDropper.Dapato!8.2A2 (CLOUD)
YandexTrojan.GenAsa!Vd8LEAy17b0
MaxSecureTrojan.Malware.4935638.susgen
FortinetW32/Dapato.BVDK!tr
AVGFileRepMalware
Cybereasonmalicious.d14e60
PandaTrj/Genetic.gen

How to remove Malware.AI.3620854650?

Malware.AI.3620854650 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment