Malware

Should I remove “Malware.AI.3659862422”?

Malware Removal

The Malware.AI.3659862422 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3659862422 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Authenticode signature is invalid

How to determine Malware.AI.3659862422?


File Info:

name: 802F6A3963AF0FD155D9.mlw
path: /opt/CAPEv2/storage/binaries/35daa0b6544d82328cd04fe4b099e82c5e00aa4d12c23f2b4b3722ed0f5ad816
crc32: AF965539
md5: 802f6a3963af0fd155d92699e0e4e4f6
sha1: 4b19289cfe1025dbe85e1e9109be6bf34968937f
sha256: 35daa0b6544d82328cd04fe4b099e82c5e00aa4d12c23f2b4b3722ed0f5ad816
sha512: 9a907cd328a6f9c44877d621dd0f393767bccba89278d731dd425e4310dd330d4d8a00b0374bbd8e4651093791e9579a8a8bca1fcf1125e635db8449343c7d4d
ssdeep: 6144:RSzTzPJxvq0c57i825gQeab0bC6n/fOdulRul1M:RSzTzcVQOT0bM
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10CA4D812B50B5BA6C26606B6A9A8923D97E0174D4581FC33EEF0FE316F64CB1B11D93C
sha3_384: 4e22700f4dd0103b204876ea8f83ef914624eb5f5527783713de89080fe531ae7ff6a63f3db5d53142773f9f9dee644d
ep_bytes: 558bec6aff68a0b24300684440430064
timestamp: 2022-06-06 01:01:25

Version Info:

0: [No Data]

Malware.AI.3659862422 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
FireEyeGeneric.mg.802f6a3963af0fd1
CylanceUnsafe
SangforTrojan.Win32.Save.BlackMoon
ESET-NOD32a variant of Win32/Packed.BlackMoon.A suspicious
APEXMalicious
ClamAVWin.Dropper.Tiggre-9845940-0
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Pykse.gm
Trapminemalicious.high.ml.score
GDataWin32.Trojan.Agent.WP
AviraHEUR/AGEN.1212184
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeArtemis!802F6A3963AF
VBA32BScope.Trojan.Sabsik.FL
MalwarebytesMalware.AI.3659862422
RisingTrojan.Generic@AI.82 (RDMK:cmRtazo1PEb4t7eZglmNqS9pczbN)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.WP!tr
BitDefenderThetaGen:NN.ZexaF.34712.BmW@aCDxnSf
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Malware.AI.3659862422?

Malware.AI.3659862422 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment