Malware

Should I remove “Malware.AI.3694823448”?

Malware Removal

The Malware.AI.3694823448 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3694823448 virus can do?

  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.3694823448?


File Info:

crc32: 376F7E6A
md5: 0bc60a465c36e8278dd06f9506d42ce1
name: 0BC60A465C36E8278DD06F9506D42CE1.mlw
sha1: 955312f1efe9b36ce2808a4f5490d3fa45a24970
sha256: 7125ff46ae7468216b1764b9e22b5811d4890f33a237776c6cbf22c8d8f09bbc
sha512: 0e2d64b0e277ea9d97eb7893f782bcb9b9f23f999844e0b738accd6da7f04c56b79adfc69970717983f74b41d6faca17626d05f35a3deaa87dd79be1c9d0ce4c
ssdeep: 12288:yRZ+IoG/n9IQxW3OBseDT+tG8bwudn2n99a4LlRhm3YB0kn68dA:82G/nvxW3WdmwuJ2n99atAnTe
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.3694823448 also known as:

BkavW32.AIDetectGBM.malware.01
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Rasftuby.Gen.14
FireEyeGeneric.mg.0bc60a465c36e827
CAT-QuickHealTrojan.Generic
McAfeeRDN/Generic.dx
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.Rasftuby.Gen.14
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_90% (W)
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Rasftuby.1ce89dc2
TencentWin32.Trojan.Generic.Iss
Ad-AwareTrojan.Rasftuby.Gen.14
SophosMal/Generic-S
F-SecureTrojan.TR/Rasftuby.tugmj
ZillyaTrojan.ScriptKD.JS.10
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
EmsisoftTrojan.Rasftuby.Gen.14 (B)
AviraTR/Rasftuby.tugmj
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.D7!ml
ArcabitTrojan.Rasftuby.Gen.14
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Rasftuby.Gen.14
CynetMalicious (score: 100)
VBA32Trojan.Wacatac
MAXmalware (ai score=86)
MalwarebytesMalware.AI.3694823448
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H09BL21
eGambitUnsafe.AI_Score_91%
WebrootW32.Trojan.Rasftuby
AVGWin32:Malware-gen
Cybereasonmalicious.65c36e
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HwYDcB8A

How to remove Malware.AI.3694823448?

Malware.AI.3694823448 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment