Malware

Malware.AI.3736060900 removal

Malware Removal

The Malware.AI.3736060900 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3736060900 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Malware.AI.3736060900?


File Info:

name: E48D8467DC54A83AFA69.mlw
path: /opt/CAPEv2/storage/binaries/05c16058b6ed8e387896df9fabeb41c8528a8ffd9cc601cf418ca168ab8498d3
crc32: 0A896FAD
md5: e48d8467dc54a83afa695488895b716d
sha1: 805e33c4158e8800328d8f9ccda7643166f8492a
sha256: 05c16058b6ed8e387896df9fabeb41c8528a8ffd9cc601cf418ca168ab8498d3
sha512: 99f66ee4cc289f2ad5f9a9316b1b707fd4eb49b8c55907fe05825af791af93b3da43490cc504b4209802f2687448d9c784630094f505b0d8af4e60599ec585ae
ssdeep: 24576:RfMwFuUbUBjCo52BxieHjhRjZjuRBbHbnmqXtaMwFuUxUB:2wQDB+X5HjhRjRuHnwQpB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EEA55B70E371080ADD1E46BA452309A55FF1991F9772CF8B5728BAB98C92FB07D32643
sha3_384: df4ffbb4c2fd194edf5e9f699db3d90e7a037c2ccd85e52d450321663b86dacfc71fdcc51d86ac0e19d3dd7fbfa2288e
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-02-26 21:10:16

Version Info:

Translation: 0x0000 0x04b0
Comments: Bloodfallen
CompanyName: Bloodfallen
FileDescription: Mail Access v1 | Sh4lltear
FileVersion: 1.0.0.0
InternalName: Mail Access v1 by Sh4lltear.exe
LegalCopyright: Copyright © 2020
LegalTrademarks: Sh4lltear
OriginalFilename: Mail Access v1 by Sh4lltear.exe
ProductName: Mail Access v1 | Sh4lltear
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.3736060900 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Razy.619891
FireEyeGeneric.mg.e48d8467dc54a83a
ALYacGen:Variant.Razy.619891
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
CyrenW32/MSIL_Brute.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderGen:Variant.Razy.619891
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Razy.619891
EmsisoftGen:Variant.Razy.619891 (B)
McAfee-GW-EditionArtemis!Trojan
GDataGen:Variant.Razy.619891
WebrootW32.Trojan.Gen
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Zpevdo.B
McAfeeArtemis!E48D8467DC54
MAXmalware (ai score=88)
MalwarebytesMalware.AI.3736060900
TrendMicro-HouseCallTROJ_GEN.R03BH09BB21
RisingTrojan.Generic/MSIL@AI.90 (RDM.MSIL:BmcK9QJXwyGWOtBPRDaCww)
SentinelOneStatic AI – Suspicious PE
BitDefenderThetaGen:NN.ZemsilF.34160.go0@a477aXp
AVGWin32:Malware-gen
Cybereasonmalicious.7dc54a
MaxSecureTrojan.Malware.77540696.susgen

How to remove Malware.AI.3736060900?

Malware.AI.3736060900 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment