Malware

Malware.AI.3728327094 (file analysis)

Malware Removal

The Malware.AI.3728327094 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3728327094 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3728327094?


File Info:

name: B526E0B274C271BEFDDC.mlw
path: /opt/CAPEv2/storage/binaries/fc04851ed6b99794d40376c7631955655f7602b38deb3a2611559eec2218164d
crc32: 0CE502DB
md5: b526e0b274c271befddcaa7d3d9bfe27
sha1: 82be7cd576684b5ecec06faea6976e78ce1f416a
sha256: fc04851ed6b99794d40376c7631955655f7602b38deb3a2611559eec2218164d
sha512: 51209e1f39767e4a0e829f6db51e698e0831f1095190bb578dcdb5a444ff94ab84902140db44d91e16a5ad8020d180861d9c090e625b692a358a3423ea619924
ssdeep: 384:EA+RrxK/4AdBoBUzbDPbuac9H5pwPh93B4D2154chOe:EA2xFAdBoBU/LSac9ZAhpB4D0k
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T173030811B280C03BF8EA01FFDAFE4CB5496CDD741B6A91D3A1C741A92B611D72436BDA
sha3_384: ffbca4efbbb750c43ff3919cbf421261ec13ae22f7a191e637124fd9dda852eced7eb51735f876c91c34a560c679b3b7
ep_bytes: e908130000e952420000e91e3d0000e9
timestamp: 2022-03-20 19:15:15

Version Info:

0: [No Data]

Malware.AI.3728327094 also known as:

LionicTrojan.Win32.Generic.4!c
FireEyeGeneric.mg.b526e0b274c271be
McAfeeRDN/Generic.dx
MalwarebytesMalware.AI.3728327094
SangforSuspicious.Win32.Save.a
CyrenW32/Fugrafa.Z.gen!Eldorado
Elasticmalicious (high confidence)
APEXMalicious
McAfee-GW-EditionBehavesLike.Win32.Generic.pt
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.13CL3EN
GoogleDetected
Antiy-AVLTrojan/Win32.PossibleThreat
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C5089186
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H06EE23
RisingTrojan.Generic@AI.100 (RDML:TC8jeORYQ2JAPAqM20Lv7Q)
IkarusTrojan.Win32
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS

How to remove Malware.AI.3728327094?

Malware.AI.3728327094 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment