Malware

Malware.AI.3962063689 removal guide

Malware Removal

The Malware.AI.3962063689 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3962063689 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3962063689?


File Info:

name: F225A494225D079765C8.mlw
path: /opt/CAPEv2/storage/binaries/9aa1e9b645afb993855bf3dfbc963f20ce48c8e9c828485f4de14550db42374c
crc32: 1B8D407A
md5: f225a494225d079765c8c4ef3cde538f
sha1: 9bb46c76152e560167e2ca5a28f97b6cdd37a48f
sha256: 9aa1e9b645afb993855bf3dfbc963f20ce48c8e9c828485f4de14550db42374c
sha512: 09a46526067818c1b4f717485d9e072aa7c1bfdae6a54bee9cc5a2b8775bfbecb2acfdb1a3439c3be7f1591db7185bfbf8928d97608caeab31e39914a4ddacb6
ssdeep: 3072:iptVIbKdgJ34AzYc+P/MCztC0pvUoFVYcSstttXUz6u8LPJbJr4hRfOz:KIW03ZzYcSzVBiE7VJr6R2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F0749E51B6428037D9590A3584A2CFA34F7F7D926B5114CBBF903F4F39742E04A3AE6A
sha3_384: 4eeea12b1e83d50195f74f101e918f00cd47bc7f5afe336ef9a94ae18ab838d194a0b9555332661a1f935856434896a0
ep_bytes: 60be008048008dbe0090f7ff57eb0b90
timestamp: 2010-12-14 09:49:21

Version Info:

CompanyName: 多玩游戏网
FileDescription: 多玩魔盒客户端
FileVersion: 1.0.46
InternalName: 多玩魔盒客户端
LegalCopyright: Copyright 2009
OriginalFilename: WoWBox
ProductName: 多玩魔盒客户端
ProductVersion: 1.0.46
Translation: 0x0804 0x04b0

Malware.AI.3962063689 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.61385302
FireEyeGeneric.mg.f225a494225d0797
ALYacTrojan.GenericKD.61385302
CylanceUnsafe
VIPRETrojan.GenericKD.61385302
SangforTrojan.Win32.Agent.V1vn
Cybereasonmalicious.6152e5
Elasticmalicious (moderate confidence)
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.61385302
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.61385302
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.61385302 (B)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.GenericKD.61385302
GoogleDetected
Antiy-AVLTrojan/Generic.ASMalwS.720E
ArcabitTrojan.Generic.D3A8AA56
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!F225A494225D
MAXmalware (ai score=84)
MalwarebytesMalware.AI.3962063689
TrendMicro-HouseCallTROJ_GEN.R002H09HM22
IkarusTrojan-GameThief.Win32.Magania
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.3962063689?

Malware.AI.3962063689 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment