Malware

How to remove “Malware.AI.3867659397”?

Malware Removal

The Malware.AI.3867659397 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3867659397 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3867659397?


File Info:

name: FA1E93C8F0C013CFD45D.mlw
path: /opt/CAPEv2/storage/binaries/c2a754a28d3792df8ef10eb5b05e625849504667b229e3a444218e835bfc217c
crc32: 2D42462B
md5: fa1e93c8f0c013cfd45d64fa2b2fcf2c
sha1: 5776183994e500140f4e64a30368a378c8600a7b
sha256: c2a754a28d3792df8ef10eb5b05e625849504667b229e3a444218e835bfc217c
sha512: d3d103dfa294ad6ec3123bdd8e895946e6235c6bc12086a31cbab08aebbd3c30e6f643358807b8a2d8062235ee32e61ec7b0a0c177e54dfdec36a1ad1ba8b257
ssdeep: 768:agO5xRYi+SfSWHHNvvG5bnl/NqNwsKVDstHxYDXBaXKynF0vpmYZS0HdJnfWO:RshfSWHHNvoLqNwDDGw8epmh0HjWO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AD835B9F74D494FEFC2456B4146B1BB08577AA80123A5BCB3BA8CD79953B126873C383
sha3_384: 227a9145a2cff947c3ab884479527afb849dfee79fa18a173227c42ba9f8fced7a5a86ec2cd4a4bdc61a154360ad9827
ep_bytes: 03f3a48b84241801000080380074108b
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Malware.AI.3867659397 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGeneric.Dacic.9C483F5C.A.756EE445
ClamAVWin.Malware.Ulise-9951569-0
ALYacGeneric.Dacic.9C483F5C.A.756EE445
MalwarebytesMalware.AI.3867659397
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (W)
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
BaiduWin32.Trojan.Agent.abh
VirITTrojan.Win32.Agent2.YNQ
CyrenW32/Agent.FYF.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGeneric.Dacic.9C483F5C.A.756EE445
AvastWin32:Agent-FK [Trj]
EmsisoftGeneric.Dacic.9C483F5C.A.756EE445 (B)
F-SecureTrojan.TR/Agent.bo.10
VIPREGeneric.Dacic.9C483F5C.A.756EE445
McAfee-GW-EditionBehavesLike.Win32.Generic.mm
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.fa1e93c8f0c013cf
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.10VVNJC
AviraTR/Agent.bo.10
Antiy-AVLTrojan/Win32.Agent.bo
ArcabitGeneric.Dacic.9C483F5C.A.756EE445
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.Dacic.R568963
McAfeeGenericRXAA-FA!FA1E93C8F0C0
MAXmalware (ai score=81)
VBA32suspected of Trojan.Agent.11
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH09DS23
RisingStealer.OnlineGames!1.6995 (CLASSIC)
YandexTrojan.Agent!jU8rxjUb+38
IkarusTrojan.Win32.Agent
FortinetW32/Agent.BO!tr
BitDefenderThetaGen:NN.ZexaF.36164.fuY@aSWbVkl
AVGWin32:Agent-FK [Trj]
DeepInstinctMALICIOUS

How to remove Malware.AI.3867659397?

Malware.AI.3867659397 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment