Malware

Malware.AI.3682915945 removal guide

Malware Removal

The Malware.AI.3682915945 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3682915945 virus can do?

  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Sniffs keystrokes

How to determine Malware.AI.3682915945?


File Info:

name: 41556DC9034E61907FA7.mlw
path: /opt/CAPEv2/storage/binaries/75321e7f517adae1676d3baa5bb595005c0905f05071e0b15eaad5e9f6a445e9
crc32: 8449EE86
md5: 41556dc9034e61907fa71c30dcf76409
sha1: 9ecf12bafe5f3be2df8203a51fe8d27859695e2e
sha256: 75321e7f517adae1676d3baa5bb595005c0905f05071e0b15eaad5e9f6a445e9
sha512: 06b5b23a48c16a7575fbc5d7cbd72f94ee8d3104cbb02c8620d73ba6a661f0f3ba7659d2b86215d8c9db05d0b218cf60a654891f29d98fa357bb16125d232e3f
ssdeep: 1536:cO+14aLCGo5ogSlKo1Y7eZ6Jdx4UIi4aSea4Vooc:S4aWp5gsh6Z6JEUI4m4Vooc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F8933B10F9C0C0ABE4C181B692E78BBAE6649E35134121D7E3F4F9A75B7D0D26D3294E
sha3_384: 7e17c4791dcfd600e2ed502babe29519de8f966291625db665866c2d5ad94e2e34bf9d29b38495ee8c4f304f5cd50223
ep_bytes: 558bec6aff68301f41006804de400064
timestamp: 2008-08-01 18:46:48

Version Info:

0: [No Data]

Malware.AI.3682915945 also known as:

LionicTrojan.Win32.Fwcei.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Malware.fqX@aC0FWcei
FireEyeGeneric.mg.41556dc9034e6190
McAfeeGenericRXAA-AA!41556DC9034E
CylanceUnsafe
ZillyaTrojan.Yahoo.Win32.124
K7AntiVirusSpyware ( 00054bda1 )
AlibabaTrojanSpy:Win32/Yahoo.f827e045
K7GWSpyware ( 00054bda1 )
Cybereasonmalicious.9034e6
CyrenW32/PWS.FHCX-4532
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Agent.NSG
APEXMalicious
AvastWin32:VB-KTM [Wrm]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Trojan.Malware.fqX@aC0FWcei
NANO-AntivirusTrojan.Win32.Mlw.fiwppi
TencentWin32.Trojan.Generic.Pabt
Ad-AwareGen:Trojan.Malware.fqX@aC0FWcei
TACHYONTrojan-PWS/W32.WebGame.90000.I
EmsisoftGen:Trojan.Malware.fqX@aC0FWcei (B)
DrWebTrojan.PWS.Siggen2.8388
VIPREBehavesLike.Win32.Malware.ahc (mx-v)
TrendMicroTROJ_GEN.R002C0GL521
McAfee-GW-EditionBehavesLike.Win32.Dropper.mm
SophosMal/Generic-S
Paloaltogeneric.ml
GDataGen:Trojan.Malware.fqX@aC0FWcei
JiangminTrojan/PSW.Yahoo.VB.x
MaxSecureTrojan.Malware.300983.susgen
AviraHEUR/AGEN.1107116
Antiy-AVLTrojan/Generic.ASMalwS.67DC4C
GridinsoftRansom.Win32.Occamy.sa
ArcabitTrojan.Malware.E414FA
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.PWSYahoo.R44637
BitDefenderThetaGen:NN.ZexaF.34062.fqX@aC0FWcei
MAXmalware (ai score=80)
VBA32BScope.Trojan.Occamy
MalwarebytesMalware.AI.3682915945
TrendMicro-HouseCallTROJ_GEN.R002C0GL521
YandexTrojan.GenAsa!ZHDo5FARPGc
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.YOO!tr.spy
AVGWin32:VB-KTM [Wrm]
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Malware.AI.3682915945?

Malware.AI.3682915945 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment