Malware

Malware.AI.326382778 removal tips

Malware Removal

The Malware.AI.326382778 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.326382778 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.326382778?


File Info:

name: A2A6E17CA4E6A61461C0.mlw
path: /opt/CAPEv2/storage/binaries/53bc219dd65ba63a751b1d9a90ed2fc85c6750128f6c781379ed402110fb21b8
crc32: 86997741
md5: a2a6e17ca4e6a61461c017f49285cbc7
sha1: 1a045d909a3a281f2aadc4e48fde994236342659
sha256: 53bc219dd65ba63a751b1d9a90ed2fc85c6750128f6c781379ed402110fb21b8
sha512: a0d5124bf251a5d015549f63eeb942ed250ff7af14e810626b91f1c0df8ce1652244dac09061986f84eb9d34aa5e6011bfb1ed9c2c8ddda105d726abb29a69ce
ssdeep: 49152:JxmDta42wnNTBj/4MnYYJ2ZhqSGLHkJEMx35DMnCIjtAyToJdXN0BMOwLloBrugf:7C1uIDQA55aJdXN0B7+sd
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T192E57C1EEEA08EBEE9730230C9A5A37C6179BD704521E50B638C7A0DD971FD16927723
sha3_384: c3860a7d65e52af94bbe4ec905c51bbdf4d54271a3f152c7138822a0a20551dda15e1a5cb3b0e6ff68c8394fd1800ae7
ep_bytes: e861040000e991feffff6a0c68808942
timestamp: 2017-05-15 21:34:15

Version Info:

CompanyName: Microsoft Corporation
FileDescription: AppVDllSurrogate32
InternalName: AppVDllSurrogate
LegalCopyright: © 2015 Microsoft Corporation. All rights reserved.
LegalTrademarks: Microsoft® is a registered trademark of Microsoft Corporation.
OriginalFilename: AppVDllSurrogate32.exe
ProductName: Microsoft Application Virtualization (App-V)
FileVersion: 5.1.125.0
ProductVersion: 5.1.125.0
PrivateBuild: RTM (by sftbuild on MBAMR01BLD02)
Translation: 0x0409 0x04b0

Malware.AI.326382778 also known as:

BkavW32.AIDetect.malware1
McAfeeArtemis!A2A6E17CA4E6
SangforTrojan.Win32.Save.a
CyrenW32/Pajetbin.H.gen!Eldorado
Elasticmalicious (high confidence)
ClamAVWin.Trojan.Generic-9865438-0
F-SecureHeuristic.HEUR/AGEN.1216242
McAfee-GW-EditionBehavesLike.Win32.Generic.wh
FireEyeGeneric.mg.a2a6e17ca4e6a614
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.136NMWS
AviraHEUR/AGEN.1216242
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Acronissuspicious
VBA32Trojan.Sabsik
MalwarebytesMalware.AI.326382778
IkarusTrojan.Agent
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Razy.858464!tr

How to remove Malware.AI.326382778?

Malware.AI.326382778 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment