Malware

Should I remove “Malware.AI.1377015632”?

Malware Removal

The Malware.AI.1377015632 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1377015632 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes executed files from disk
  • Anomalous binary characteristics

How to determine Malware.AI.1377015632?


File Info:

name: 18B4CF18B34D4ED56297.mlw
path: /opt/CAPEv2/storage/binaries/16c50aacd0bbaff78b5bfef9a87f1ec715a821fcb1c67e0d788eb8bc869977ed
crc32: 65E99D6A
md5: 18b4cf18b34d4ed56297a969c2367981
sha1: cd50f6236c59d7ae76dd1ce3f5c50a2789d452f2
sha256: 16c50aacd0bbaff78b5bfef9a87f1ec715a821fcb1c67e0d788eb8bc869977ed
sha512: 0b36817ee2f657603468691f854cda7f61d62bab75be6c3f8b70aabad20138d58e89bd7a819877efc5215c8beb0b893e8957a6cb780cc289471e78830ad75c68
ssdeep: 3072:YLNzO1Cv24wvhJt0UWhQ9d7o/s6SjuxJPRiWrxNMNWonV0gW+R6dJt:Yw1C+3pJshkdKsfj6niWr8NlnVFW86H
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1EE048D5BB74913B2C78103B23A4B98C2B72E957D237E85E0686D801D2367E38937B7D5
sha3_384: 2543ae9d5e9321e3873beff900d8441cd94165ccf188a8e1163d4ae0ee9361d5d7fdb56b82a948cebecb8c0cf3f3f951
ep_bytes: ba000000005381c00100000068fa6669
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Malware.AI.1377015632 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.104081
SkyhighBehavesLike.Win32.Glupteba.ch
McAfeeGlupteba-FUBP!18B4CF18B34D
MalwarebytesMalware.AI.1377015632
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058c5ff1 )
K7GWTrojan ( 005304e81 )
VirITTrojan.Win32.Copak.C
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HTAQ
APEXMalicious
ClamAVWin.Packed.Barys-10002063-0
KasperskyHEUR:Trojan.Win32.Copak.pef
BitDefenderTrojan.GenericKDZ.104081
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Evo-gen [Trj]
RisingTrojan.Injector!1.C865 (CLASSIC)
EmsisoftTrojan.GenericKDZ.104081 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPRETrojan.GenericKDZ.104081
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.18b4cf18b34d4ed5
SophosMal/Generic-S
IkarusTrojan.Win32.Caynamer
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/Kryptik.JDY.gen!Eldorado
Antiy-AVLTrojan/Win32.Kryptik
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Copak.GPX!MTB
XcitiumMalCrypt.Indus!@1qrzi1
ArcabitTrojan.Generic.D19691
ZoneAlarmHEUR:Trojan.Win32.Copak.pef
GDataWin32.Trojan.PSE.2LZDG3
CynetMalicious (score: 100)
VBA32BScope.Trojan.Wacatac
ALYacTrojan.GenericKDZ.104081
MAXmalware (ai score=87)
Cylanceunsafe
TencentTrojan.Win32.Copak.hx
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.DZQA!tr
BitDefenderThetaGen:NN.ZexaF.36804.k8Z@aSFtbhb
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS

How to remove Malware.AI.1377015632?

Malware.AI.1377015632 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment