Categories: Malware

Malware.AI.1388001843 removal instruction

The Malware.AI.1388001843 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1388001843 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1388001843?


File Info:

name: 670E2DA1D496F401B3B4.mlwpath: /opt/CAPEv2/storage/binaries/33b6b32fce0a94c7bf54b859844ebad732c6cf5ce8edf8929450d48e17da933ccrc32: A364AD25md5: 670e2da1d496f401b3b4ee663c7d8b21sha1: 099380e014ad17c42e3a39df771c361137cfef83sha256: 33b6b32fce0a94c7bf54b859844ebad732c6cf5ce8edf8929450d48e17da933csha512: d6c2858dd885e766ee5227e84c987b1bf210bef75c197687bb8b6f7dd5475879320f333001256238f833b69a1592305ed9b74e8747e638af7bb490c3987f2539ssdeep: 6144:XJ8wZXyN6kAS0peOL+nWtyFicbHiunp0GVbwji9qmkNe/4NVoqrd9e:Xo0pWnTFRdp0Gl99DkNeAAQtype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T13774125A3550C9D2E8A30FFA0497D605BF53F2D0CAA2CB259487508A39DA7C2873CE5Fsha3_384: 3921c43a98219f05a0a5549fab66f808db1fbf4414ce97855dc07ee5e7ece6a8baa7c5d82c558cc3fa81f30d703bf721ep_bytes: 5589e581ecfc01000087fe56575355e8timestamp: 1970-10-10 14:32:32

Version Info:

0: [No Data]

Malware.AI.1388001843 also known as:

Bkav W32.AIDetect.malware2
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Lazy.208802
FireEye Generic.mg.670e2da1d496f401
CAT-QuickHeal FraudTool.Security
McAfee Generic FakeAV.nn
Cylance Unsafe
Zillya Trojan.FakeAV.Win32.136947
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0021226a1 )
K7GW Trojan ( 0021226a1 )
Cybereason malicious.1d496f
BitDefenderTheta Gen:NN.ZexaF.34582.vu0@aaM0vkec
Cyren W32/FakeAlert.JP.gen!Eldorado
Symantec Trojan.Gen.MBT
tehtris Generic.Malware
ESET-NOD32 a variant of Win32/Kryptik.JGV
Baidu Win32.Trojan.Kryptik.nk
TrendMicro-HouseCall TROJ_FAKEAL.SMEP
ClamAV Win.Trojan.Fakesec-895
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender Gen:Variant.Lazy.208802
NANO-Antivirus Trojan.Win32.Krap.bqlxt
SUPERAntiSpyware Trojan.Agent/Gen-FakeSoft
APEX Malicious
Tencent Malware.Win32.Gencirc.11fa0e77
Ad-Aware Gen:Variant.Lazy.208802
Emsisoft Gen:Variant.Lazy.208802 (B)
Comodo TrojWare.Win32.PkdKrap.AO@2mkvi8
DrWeb Trojan.Fakealert.19937
VIPRE Gen:Variant.Lazy.208802
TrendMicro TROJ_FAKEAL.SMEP
McAfee-GW-Edition BehavesLike.Win32.Generic.fc
Trapmine malicious.high.ml.score
Sophos ML/PE-A + Mal/FakeAV-EA
Ikarus Packer.Win32.Krap
GData Gen:Variant.Lazy.208802
Jiangmin TrojanDownloader.Murlo.bdr
Avira TR/FakeAV.BO.1
MAX malware (ai score=85)
Antiy-AVL Trojan/Generic.ASMalwS.20
Microsoft VirTool:Win32/Obfuscator.OX
Cynet Malicious (score: 100)
AhnLab-V3 Win-Trojan/Zbot3.Gen
VBA32 BScope.Trojan.ImpTr
ALYac Gen:Variant.Lazy.208802
Malwarebytes Malware.AI.1388001843
Avast Win32:FakeSysdef-L [Trj]
Rising Trojan.Generic@AI.100 (RDML:VG6Z+uJnLS4PGDlOb+1FWg)
SentinelOne Static AI – Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Krap.AON!tr
AVG Win32:FakeSysdef-L [Trj]
Panda Adware/WindowsRecovery
CrowdStrike win/malicious_confidence_100% (D)

How to remove Malware.AI.1388001843?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Malware.AI.1560801952 malicious file

The Malware.AI.1560801952 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Malware.AI.3778280684 removal tips

The Malware.AI.3778280684 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Should I remove “Jalapeno.777”?

The Jalapeno.777 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

MSIL/Kryptik.ALMH (file analysis)

The MSIL/Kryptik.ALMH is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Should I remove “Trojan.Win32.Agent.xbmkrx”?

The Trojan.Win32.Agent.xbmkrx is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Tedy.179306 removal guide

The Tedy.179306 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago