Malware

Malware.AI.3690628856 (file analysis)

Malware Removal

The Malware.AI.3690628856 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3690628856 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.3690628856?


File Info:

name: C9A7CE603927D4143879.mlw
path: /opt/CAPEv2/storage/binaries/5d93fa20521235c97fd34c7fbb41431bca0793be86288d6358b52e27e4e1b167
crc32: F4B0B875
md5: c9a7ce603927d4143879d64ab1192371
sha1: 63ccd5c3d8568ad7458bbec23e8b26d9d4b1294e
sha256: 5d93fa20521235c97fd34c7fbb41431bca0793be86288d6358b52e27e4e1b167
sha512: 9754864351d597f8c113197673ce3b66d1d417c89e4e87a13152cd19ba7098608d385156b15e4f6f20d97360538924a49accc39491c030a611f7533b0f52449c
ssdeep: 49152:JW8c+kYQD3FrShKT1iGYmauymozgQfrZc:JW/YQD3RkTu5ocmr2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T180852397846CF03DE5F0AFB2191F4AFE626D23BD909871864BD4F8ECDA7244644C8E06
sha3_384: e88c816f3c442254e362c8fa5ec2e9ad0b5f48c0dfd1792ef977faaf7158d0f3983df56617c1b1af35f2c4b8fa140c2b
ep_bytes: 0000c7054097400009000000c7054497
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.3690628856 also known as:

BkavW32.AIDetectMalware
LionicHacktool.Win32.PePatch.x!c
DrWebTrojan.MulDrop.18955
MicroWorld-eScanGen:Variant.Graftor.416398
FireEyeGeneric.mg.c9a7ce603927d414
SkyhighBehavesLike.Win32.Generic.tc
McAfeeArtemis!C9A7CE603927
Cylanceunsafe
SangforSuspicious.Win32.Save.vb
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojanDropper:Win32/Generic.d69b5ad9
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.3d8568
ArcabitTrojan.Graftor.D65A8E
BitDefenderThetaGen:NN.ZexaF.36608.SHY@aK14Qwo
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Dropper.Bifrost-10013500-0
KasperskyVHO:Packed.Win32.PePatch.gen
BitDefenderGen:Variant.Graftor.416398
AvastWin32:Crypt-BFP [Trj]
EmsisoftGen:Variant.Graftor.416398 (B)
VIPREGen:Variant.Graftor.416398
Trapminemalicious.high.ml.score
SophosMal/Generic-S
IkarusTrojan.Crypt
Antiy-AVLTrojan[Packed]/Win32.PePatch
Kingsoftmalware.kb.a.995
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmVHO:Packed.Win32.PePatch.gen
GDataWin32.Trojan.PSE.VYITAU
GoogleDetected
VBA32Malware-Cryptor.VB.gen.2
ALYacGen:Variant.Graftor.416398
MAXmalware (ai score=87)
MalwarebytesMalware.AI.3690628856
TrendMicro-HouseCallTROJ_GEN.R03BH07KT23
RisingTrojan.Generic@AI.100 (RDML:iDYNxwZTQ6jUobJ8MSRuxQ)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.74566048.susgen
FortinetW32/PossibleThreat
AVGWin32:Crypt-BFP [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.3690628856?

Malware.AI.3690628856 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment