Malware

What is “Malware.AI.3699816423”?

Malware Removal

The Malware.AI.3699816423 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3699816423 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.3699816423?


File Info:

name: 499BAC2B5C4703385AD1.mlw
path: /opt/CAPEv2/storage/binaries/d94f978ee877bfdc7ec983d0c47520c80d3fe085ce0c5fa66c188f88d72a6a7f
crc32: 038BA9D4
md5: 499bac2b5c4703385ad1dd3dd5ecb5c9
sha1: b7709ec9dce0aadaa26f3169b08521bd68782567
sha256: d94f978ee877bfdc7ec983d0c47520c80d3fe085ce0c5fa66c188f88d72a6a7f
sha512: a2f4a998081be7c4efa481ef6ff5a29d97fd6d564ee1197622d164a91b01240e4acbe6d691881e4b830cb6764f1167f3d7e2f907b5827fd2bfe542b28eebf171
ssdeep: 98304:YG5taDw8jCqxGUgsqx7so1LC57dbeQAMt+zCXy7/wU:pas0CqxGMwO57dPoz/DwU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F40623B2E9538E48EC3A61B40071CF35059A5CAA862E4B1D2FE63D9778F7A472C3D453
sha3_384: c93c2298623fd1386d1999f062244f56ccfe11a7aee9ce7d4e4b790e9e2fd2dc08c7144429d04e58e7759d13c6a1a202
ep_bytes: b88cb4cf005064ff3500000000648925
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: www.sicheats.com
FileDescription: SC Engine Trainer
FileVersion: 3.4.10.3111
InternalName: SC Engine Trainer
LegalCopyright: www.sicheats.com
LegalTrademarks: www.sicheats.com
OriginalFilename: SC Trainer
ProductName: www.sicheats.com
ProductVersion: 3.4.10.2694
Comments: www.sicheats.com
SC Engine Homepage: http://www.sicheats.com/
Description: SC Engine Trainer
Thanks to: DarkByte
Translation: 0x040a 0x04e4

Malware.AI.3699816423 also known as:

McAfeeArtemis!499BAC2B5C47
ZillyaTool.CheatEngine.Win32.20704
K7AntiVirusAdware ( 005693e61 )
K7GWAdware ( 005693e61 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.CheatEngine.AB potentially unsafe
APEXMalicious
ClamAVWin.Tool.Cheatengine-9975726-0
SophosCheatEngine (PUA)
McAfee-GW-EditionPUP-XBE-HS
JiangminTrojan/AdwareRemover.g
WebrootW32.Malware.Heur
MAXmalware (ai score=99)
Antiy-AVLRiskWare/Perhaps.CheatEngine
GoogleDetected
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.3699816423
TrendMicro-HouseCallTROJ_GEN.R002H06ED23
RisingTrojan.Win32.Generic.12C62707 (C64:YzY0OhyB0ouZ1CKy)
YandexTrojan.GenAsa!e9CaXq3o47Y
IkarusTrojan-Banker.Win32.Banker
FortinetRiskware/CheatEngine
DeepInstinctMALICIOUS

How to remove Malware.AI.3699816423?

Malware.AI.3699816423 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment