Malware

Should I remove “Malware.AI.3764786821”?

Malware Removal

The Malware.AI.3764786821 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3764786821 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid
  • CAPE detected the VMProtectStub malware family
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.3764786821?


File Info:

name: 9BA5B2BBBC0889474E1C.mlw
path: /opt/CAPEv2/storage/binaries/cf14c9880284d40072635f3efab97be2fd8feffc28d8851c63e30cf10458722d
crc32: B6F7FB85
md5: 9ba5b2bbbc0889474e1cd8e50d68049f
sha1: e0d2dfcff6f3c19984f2d405f9f2816d0f5e4fed
sha256: cf14c9880284d40072635f3efab97be2fd8feffc28d8851c63e30cf10458722d
sha512: ff422708158a2baeb92dbd0e0846e7ed846dc62fe8a0ecac94fc75b59eeb76db0f4e2d9640c0d2ef6fa1e60183618a18b4bd2613fd2debbd0a8c0dba58d108b5
ssdeep: 49152:GI3Ip9GgKszZ9E/u3Pr4xmdbP44e7wbSNae2xpQqp2dK6YDwvOyWuCsqhBz2OBPk:95ST/1WwQj2WUzyWuRqzdQQOPx
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1CD263312519C276EF9459C302896FDBA3285F2676BECCBBEE8D0E01B51341703EEB465
sha3_384: 4e061aa124b428e19e532dd4945b47f87817c785977d586ca48c109ef09514bd41d316063f3b3ad78f8012024ebfa0c8
ep_bytes: e85f6502007417c2d4b14845af78a3db
timestamp: 2019-07-01 09:58:17

Version Info:

0: [No Data]

Malware.AI.3764786821 also known as:

BkavW32.Common.2A3A6CD6
SkyhighArtemis!Trojan
MalwarebytesMalware.AI.3764786821
ZillyaTrojan.VMProtect.Win32.77662
AlibabaPacked:Win32/VMProtect.5818fbb2
K7GWTrojan ( 7000001c1 )
K7AntiVirusTrojan ( 7000001c1 )
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.VMProtect.ABD
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Black.jvdvhb
AvastWin32:Trojan-gen
F-SecureTrojan.TR/Black.Gen2
BaiduWin32.Packed.VMProtect.a
SophosMal/VMProtBad-A
VaristW32/ABRisk.DIEZ-7960
AviraTR/Black.Gen2
GoogleDetected
McAfeeArtemis!9BA5B2BBBC08
Cylanceunsafe
IkarusTrojan.Win32.VMProtect
MaxSecureTrojan.Malware.1383985.susgen
FortinetW32/PossibleThreat
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.3764786821?

Malware.AI.3764786821 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment