Malware

Malware.AI.3723936138 removal guide

Malware Removal

The Malware.AI.3723936138 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3723936138 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine Malware.AI.3723936138?


File Info:

name: C8546B4D4389F2B9E7C2.mlw
path: /opt/CAPEv2/storage/binaries/820763ea9861b0ade36c45617f9640e77e8414c4cbb958ef1057ea6eda3cb080
crc32: B88C0509
md5: c8546b4d4389f2b9e7c2c3c0d3dd5e7f
sha1: d72210cce2e4c07f457eedb64ba7d7c6c7194822
sha256: 820763ea9861b0ade36c45617f9640e77e8414c4cbb958ef1057ea6eda3cb080
sha512: 8f3af6217307f901fe4e7c06aa5a6ad28b0e2513545c18244e47cfce4be96166937114198e4ea6020a60c88f90f6fa02fea92e66e470b83e52f6471f3deb9088
ssdeep: 1536:D59yMg5CYYZ6lH90ifX4rZHbRq7Ody5QkJ:D59yMg5uoRP0q7O0CkJ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D643F14A4C3F7B57C624F87A998CD2BF86BC253B69A1A73F8603541329904CC62D8D73
sha3_384: 324c22fa045dbcb3cea1392323eb0efd7d4e00a2310b81b0dd6278dc36c59cad224b0ab28a51a5cf5ec0c6de0484c3f4
ep_bytes: b9000000005621c721f88b142483c404
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Malware.AI.3723936138 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.744906
FireEyeGeneric.mg.c8546b4d4389f2b9
SkyhighBehavesLike.Win32.Generic.qc
ALYacGen:Variant.Razy.744906
MalwarebytesMalware.AI.3723936138
ZillyaTrojan.Kryptik.Win32.3426871
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058c5ff1 )
BitDefenderGen:Variant.Razy.744906
K7GWTrojan ( 005690671 )
Cybereasonmalicious.ce2e4c
BitDefenderThetaGen:NN.ZexaF.36792.diW@aeUZ0lc
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.FFP
APEXMalicious
KasperskyHEUR:Trojan.Win32.Copak.pef
AlibabaTrojan:Win32/Copak.e5a72780
ViRobotTrojan.Win.Z.Kryptik.58368.DV
TencentWin32.Trojan.Copak.Gajl
SophosTroj/Agent-BHER
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Packed2.43250
VIPREGen:Variant.Razy.744906
TrendMicroTROJ_GEN.R002C0PK723
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Razy.744906 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.lpr
GoogleDetected
AviraTR/Crypt.XPACK.Gen
VaristW32/Kryptik.DXL.gen!Eldorado
Antiy-AVLTrojan/Win32.Kryptik
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Razy.DB5DCA
ZoneAlarmHEUR:Trojan.Win32.Copak.pef
GDataGen:Variant.Razy.744906
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Skeeyah.R425377
McAfeeGlupteba-FUBP!C8546B4D4389
MAXmalware (ai score=86)
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PK723
RisingTrojan.Injector!1.D22B (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FFP!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.3723936138?

Malware.AI.3723936138 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment