Malware

Malware.AI.3640494204 malicious file

Malware Removal

The Malware.AI.3640494204 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3640494204 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3640494204?


File Info:

name: A1399B49E8890B0D62B2.mlw
path: /opt/CAPEv2/storage/binaries/555030f01c199d2a556202181bfbb2f297724cd26481752821cea74d69601da1
crc32: 48B1D927
md5: a1399b49e8890b0d62b2727ae402634a
sha1: b32aa74141f0176e0475833f4025f37886d5e4a9
sha256: 555030f01c199d2a556202181bfbb2f297724cd26481752821cea74d69601da1
sha512: 060f8818ad9a242931c93b9cc0ce506014bce6294f9f66b050af23f2d63e85a314ae9b68b96e2528db2294af1727da91194a5bfdfc5af1b746c2a19d7793c5af
ssdeep: 768:GgAwABEirTNOQLHQ92uiYDt5Fa+TraTzo9AB7xsAo:GAitOQk4YDtnlTrawao
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17C241A31F610D47BE480027FC3D69772B4AD5D301B9520E3D3E06E9DA63A9EAB53158E
sha3_384: 00c37a4a2bbdd0dfa50a75ad091338604ddbe5f0e8ce981c527c91d1778ea7fc9455a076460b8d1547581b443368361b
ep_bytes: 558bec6aff68d87742006870aa400064
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Malware.AI.3640494204 also known as:

BkavW32.AIDetect.malware1
LionicWorm.Win32.Juched.lyjw
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.ClipBanker.215
FireEyeGeneric.mg.a1399b49e8890b0d
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.ClipBanker.215
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0058cb161 )
AlibabaTrojan:Win32/GenKryptik.36d2e086
K7GWTrojan ( 0058cb161 )
Cybereasonmalicious.9e8890
VirITWorm.Win32.Generic.JS
CyrenW32/SuspPack.FW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.EZLE
APEXMalicious
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Variant.ClipBanker.215
NANO-AntivirusTrojan.Win32.Juched.fiiyae
AvastWin32:Malware-gen
TencentWin32.Trojan.Clipbanker.Lizx
Ad-AwareGen:Variant.ClipBanker.215
EmsisoftGen:Variant.ClipBanker.215 (B)
TrendMicroTROJ_GEN.R002C0GA722
McAfee-GW-EditionBehavesLike.Win32.Infected.dz
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.ClipBanker.215
JiangminTrojan/Generic.adwgc
AviraTR/Patched.Ren.Gen3
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.ClipBanker.215
MicrosoftWorm:Win32/Ganelp
CynetMalicious (score: 100)
AhnLab-V3Worm/Win.Palevo.C4899632
Acronissuspicious
McAfeeArtemis!A1399B49E889
MAXmalware (ai score=83)
VBA32Trojan.Wacatac
MalwarebytesMalware.AI.3640494204
TrendMicro-HouseCallTROJ_GEN.R002C0GA722
RisingWorm.Ganelp!8.2BD (CLOUD)
YandexTrojan.GenAsa!ceN4aAluftc
IkarusTrojan.Win32.Krypt
MaxSecureWorm.W32.Jusched.BUZ
FortinetW32/GenKryptik.EZLE!tr
BitDefenderThetaGen:NN.ZexaF.34114.nCW@aWGJ09g
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_80% (D)

How to remove Malware.AI.3640494204?

Malware.AI.3640494204 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment