Malware

Should I remove “Malware.AI.3866399085”?

Malware Removal

The Malware.AI.3866399085 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3866399085 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.3866399085?


File Info:

name: F3A48DBA4CC31D4560DC.mlw
path: /opt/CAPEv2/storage/binaries/6627b9e51f5d8f7673d69ac46f412818fd3cec66c4e497c63fd1addabbb51b4e
crc32: B0F191F4
md5: f3a48dba4cc31d4560dcc0546d8298db
sha1: eb5824f012e64cd7123c409a911f5e398e00a08a
sha256: 6627b9e51f5d8f7673d69ac46f412818fd3cec66c4e497c63fd1addabbb51b4e
sha512: d8a62498e819d230e831fe64b60297185fad844bbb2df0e8c347ff09b8038634fe8e3e05b931ee0c9032f560f0c958f772ac2b138b6e6494c5e9a04204820c07
ssdeep: 6144:9Q6QjnoMiEX/rjWJt9Zb7MAbJUiLORoFq++/ZXTAJZGH+cECIIPKGdo5V3oSf:HQLiA/rK7gA1UiLORgq+AZTSGH3ECbiJ
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1CE642379C66D0D7AE15E48B04412547C4FB6CCD206A94FAC1821FCCEA5BD6896E2BB3C
sha3_384: 1834b8c2ce3bd4eaeb7ac0d1f3d2731b3236b158da2f4dca60e79c7e2c49070b58e979ace71e2e8dcdf89fa73b2515d6
ep_bytes: 807c2408010f85d00b000060be00c00b
timestamp: 2023-05-05 15:59:05

Version Info:

FileVersion: 3.4.0.0
FileDescription: 易语言程序
ProductName: 解析插件
ProductVersion: 3.4.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Malware.AI.3866399085 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
FireEyeGeneric.mg.f3a48dba4cc31d45
SkyhighBehavesLike.Win32.Generic.fc
MalwarebytesMalware.AI.3866399085
SangforTrojan.Win32.Agent.Vao6
K7AntiVirusAdware ( 005848221 )
AlibabaTrojan:Win32/Generic.87e76cd3
K7GWAdware ( 005848221 )
CrowdStrikewin/grayware_confidence_70% (D)
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
GoogleDetected
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
VaristW32/S-b9f587c1!Eldorado
Antiy-AVLRiskWare/Win32.FlyStudio.a
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataWin32.Trojan.PSE.17UBEGE
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C5344527
McAfeeGenericRXAA-AA!F3A48DBA4CC3
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH06LA23
YandexTrojan.GenAsa!msXab18BXcI
IkarusTrojan.Win32.Agent
MaxSecureDropper.Dinwod.frindll
FortinetRiskware/PackedFlyStudio
BitDefenderThetaGen:NN.ZedlaF.36802.tmSfaGp9rKcb
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan

How to remove Malware.AI.3866399085?

Malware.AI.3866399085 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment