Malware

How to remove “Malware.AI.3766340759”?

Malware Removal

The Malware.AI.3766340759 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3766340759 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3766340759?


File Info:

name: 9E0B1B7ECA0901050307.mlw
path: /opt/CAPEv2/storage/binaries/2fabe00bfa7d858b58d7a92cd0568156399d7d20812a2ae7a1cf2210839e1780
crc32: 68FEF1BB
md5: 9e0b1b7eca0901050307e983b2b59c3b
sha1: 2f4ad0807990c996a6f24fd61b674483289bbbde
sha256: 2fabe00bfa7d858b58d7a92cd0568156399d7d20812a2ae7a1cf2210839e1780
sha512: eb194690e552262d41c96b149d3398b99b6950508a440eeaa13f83a82c5e9edd382b90e3eedc69646b32ff8a72f9f10177ecb36e9a846ee97b742c16498778ee
ssdeep: 12288:aiQNXxTh0zNM4eg98WDUAowKqW1BeFEH6TYQ:aiO9h0BM4h/DxW10JTV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T141E47C10BBD5D0B6D3A235724EA7E3756AB9A8215F2047C777D02E7D5E302D29E3830A
sha3_384: 9e404715389635ce9907ec4ceac412fc184c7a13960ceca70188f6f24db1816feb2afb3d8090799339b0f2beaea8519a
ep_bytes: e892730000e979feffff3b0d00164600
timestamp: 2013-12-16 08:46:52

Version Info:

FileVersion: 2013, 12, 16, 1
InternalName: RunGameEx.exe
LegalCopyright: 保留所有权利。
OriginalFilename: RunGameEx.exe
ProductVersion: 2013, 12, 16, 1
Translation: 0x0804 0x03a8

Malware.AI.3766340759 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.9e0b1b7eca090105
CAT-QuickHealTrojan.Mauvaise.SL1
MalwarebytesMalware.AI.3766340759
ZillyaTool.ZhangGuoJian.Win32.8
K7AntiVirusTrojan ( 00587e511 )
K7GWTrojan ( 00587e511 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/RiskWare.ZhangGuoJian.B
APEXMalicious
BitDefenderGen:Variant.Graftor.479311
NANO-AntivirusRiskware.Win32.ZhangGuoJian.elepus
MicroWorld-eScanGen:Variant.Graftor.479311
EmsisoftGen:Variant.Graftor.479311 (B)
VIPREGen:Variant.Graftor.479311
McAfee-GW-EditionBehavesLike.Win32.StartPage.jt
GDataGen:Variant.Graftor.479311
ArcabitTrojan.Graftor.D7504F
MicrosoftProgram:Win32/Wacapew.C!ml
BitDefenderThetaGen:NN.ZexaF.36318.Ry0@am@xZrnj
ALYacGen:Variant.Graftor.479311
MAXmalware (ai score=82)
VBA32BScope.Trojan.Bitrep
RisingTrojan.Generic@AI.88 (RDML:Wt1peRUAOI2Dw3C2lnBLRA)
YandexTrojan.GenAsa!KHtH6sxCFQE
SentinelOneStatic AI – Suspicious PE

How to remove Malware.AI.3766340759?

Malware.AI.3766340759 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment