Malware

Malware.AI.3732720280 removal instruction

Malware Removal

The Malware.AI.3732720280 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3732720280 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Malware.AI.3732720280?


File Info:

name: 3CD80A064B2208F15CB4.mlw
path: /opt/CAPEv2/storage/binaries/80b38fb7e5df0de3f6fbcef3c18ab652fe12caebc77625400ab7a42d0f1279c8
crc32: DE2894BB
md5: 3cd80a064b2208f15cb4afa84263a840
sha1: 4d2fa56033ecac7d80cfca19e3191d1c975cea81
sha256: 80b38fb7e5df0de3f6fbcef3c18ab652fe12caebc77625400ab7a42d0f1279c8
sha512: 3f385b83efd22c22da937b50033f58bae3287071a233ea59ae27a5ca2369629e030a3516c0c267adae81fe1d024676e6f36f2256a7d58ee569517c8085ef2725
ssdeep: 6144:JOtW3ui66WUxvDpyK0iEp/u2nYbexg94/HSIkKpb8:JOo34C7EJ7nYz94/yud8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15154BE513E44CD17C6F63BFC0FA0E2A453B896882825C6177EF598AFFAEEA461D11341
sha3_384: fc9034b5e1a20679ee5b6d87d8f22629f3b30ff9b51d559bbc24a47c70f17f7170d84cec019d12678955f0991404d867
ep_bytes: ff250020400000000000000000000000
timestamp: 2017-09-22 17:13:01

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName: Lolesley
FileDescription: BF3-MultiHack2
FileVersion: 2.0.0.0
InternalName: BF3-MultiHack2.exe
LegalCopyright: Copyright © 2017
LegalTrademarks: Lolesley
OriginalFilename: BF3-MultiHack2.exe
ProductName: BF3-MultiHack2
ProductVersion: 2.0.0.0
Assembly Version: 2.0.0.0

Malware.AI.3732720280 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.DNP.rm1@a8dShsg
FireEyeGeneric.mg.3cd80a064b2208f1
McAfeeGenericRXEU-YW!3CD80A064B22
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.64b220
BitDefenderThetaAI:Packer.2D79FF111F
APEXMalicious
BitDefenderGen:Trojan.Heur.DNP.rm1@a8dShsg
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.10ba711e
Ad-AwareGen:Trojan.Heur.DNP.rm1@a8dShsg
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionGenericRXEU-YW!3CD80A064B22
EmsisoftGen:Trojan.Heur.DNP.rm1@a8dShsg (B)
GDataGen:Trojan.Heur.DNP.rm1@a8dShsg
WebrootW32.Trojan.Gen
Antiy-AVLTrojan/Generic.ASMalwS.28A7F5C
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.DNP.rm1@a8dShsg
MAXmalware (ai score=88)
MalwarebytesMalware.AI.3732720280
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
AVGWin32:Malware-gen
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.3732720280?

Malware.AI.3732720280 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment