Malware

What is “Malware.AI.3772944825”?

Malware Removal

The Malware.AI.3772944825 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3772944825 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.3772944825?


File Info:

name: E730C692EF3E2EED744E.mlw
path: /opt/CAPEv2/storage/binaries/d57da914abb0828dae1417a13664e0edcb6e505666b8e78dd1f697341766dc14
crc32: 3D643691
md5: e730c692ef3e2eed744e0c95178510e9
sha1: 214b4142ef3eb96f5cb5e2ae373b2f6ba8662f12
sha256: d57da914abb0828dae1417a13664e0edcb6e505666b8e78dd1f697341766dc14
sha512: f00b333e24803bb620582c81be218bd09d3f0bbbf7c302c74c180d78ece38a24918a180b2b969aa12e7f97cd740e8236e10a6f69b5b534c5ee38573063a4f374
ssdeep: 1536:bVtAnQAVOWIXvlYFprsFbNSOglUSYkGkERu14ekxWT/IDoHGA9v8oouRSqgO:blAVsXvlkpUNZr01TkoEDENvLIO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B9C38B031A548F53E4A9C775BF2308105FA5AD0DAAD6FAEFD893089B0B1E7314A4D1DE
sha3_384: db7011f2c97cd956c29538b1836761eb5172956589e759494037b8670b076c5196d1e922eb60ecd2733c248d75fccd7f
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-10-03 18:46:24

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: TPE
FileVersion: 1.0.0.0
InternalName: TPE.exe
LegalCopyright: Copyright © 2019
LegalTrademarks:
OriginalFilename: TPE.exe
ProductName: TPE
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.3772944825 also known as:

MicroWorld-eScanGen:Variant.Lazy.106072
FireEyeGeneric.mg.e730c692ef3e2eed
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.Lazy.106072
CylanceUnsafe
ZillyaTool.Agent.Win32.41195
SangforTrojan.Win32.Generic.ky
K7AntiVirusHacktool ( 0053a1a61 )
AlibabaTrojan:MSIL/HacktoolX.cda364c6
K7GWHacktool ( 0053a1a61 )
Cybereasonmalicious.2ef3e2
BitDefenderThetaGen:NN.ZemsilF.34182.hm0@aagNBGp
CyrenW32/Trojan.WGSV-2976
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/HackTool.Agent.LF
TrendMicro-HouseCallTROJ_GEN.R002C0PKC21
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Lazy.106072
NANO-AntivirusTrojan.Win32.MSILPerseus.hzmekn
AvastWin32:HacktoolX-gen [Trj]
EmsisoftGen:Variant.Lazy.106072 (B)
F-SecureHeuristic.HEUR/AGEN.1204160
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PKC21
McAfee-GW-EditionPUP-XLQ-HC
SentinelOneStatic AI – Malicious PE
SophosMal/Generic-S
APEXMalicious
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1204160
Antiy-AVLHackTool/MSIL.Agent
MicrosoftBackdoor:Win32/Bladabindi!ml
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Lazy.106072
CynetMalicious (score: 99)
McAfeePUP-XLQ-HC
MAXmalware (ai score=80)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.3772944825
YandexRiskware.Agent!jg1Lu/GSIiA
IkarusTrojan.MSIL.HackTool
FortinetMSIL/Agent.KS!tr
AVGWin32:HacktoolX-gen [Trj]
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.3772944825?

Malware.AI.3772944825 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment