Malware

Malware.AI.3774974 removal guide

Malware Removal

The Malware.AI.3774974 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3774974 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.3774974?


File Info:

name: 0ECA20BB5510F0B19D9B.mlw
path: /opt/CAPEv2/storage/binaries/c9b028e6d0a0fcfba294c066de0cc59b1d498fc8ac3e442f6896b98ae2186599
crc32: BE7D6861
md5: 0eca20bb5510f0b19d9b2cf0d87f146a
sha1: b318be1147fdd7049df208c9f2ec63b998786132
sha256: c9b028e6d0a0fcfba294c066de0cc59b1d498fc8ac3e442f6896b98ae2186599
sha512: cc88b847c1bd5fab1bde11b17df23536086a05ef0491b5046a91e138e2cb41343a3b770c85ef9f9388e48f93a403ce8816be483352bfe8fa3fbdca677aaaa696
ssdeep: 24576:londaVH7IqKv5kPVhiGg2xQqaVq/DGkYHeaMr7pAVJzkbNynUkVE:cd+bIxkNkGnuqaV2yyAHAhS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T138753569221B8412C49973FEDD1BEA92429CDFD4F0C6AD679074391AA031E2FCC19DCE
sha3_384: 5f937c58956f13a73ae1d283bc68a55f300cfeee40fd0660c2158c15f183f3d600e5420ae3d1576733d2c7be454337ed
ep_bytes: ff25002040005589e5578b7d106a0158
timestamp: 2022-08-01 13:35:34

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName: dispel-pvp.ru
FileDescription: Dispel
FileVersion: 2.0.0.0
InternalName: Dispel-PVP.exe
LegalCopyright: Copyright © 2022 Dispel-pvp
LegalTrademarks: dispel-pvp.ru
OriginalFilename: Dispel-PVP.exe
ProductName: dispel-pvp.ru
ProductVersion: 2.0.0.0
Assembly Version: 2.0.0.0

Malware.AI.3774974 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.MSIL.Agent.4!c
MicroWorld-eScanIL:Trojan.MSILMamut.5948
CAT-QuickHealTrojan.MSIL
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/MSILMamut.78c87aee
CyrenW32/ABRisk.YTOO-5317
SymantecTrojan.Gen.MBT
Elasticmalicious (moderate confidence)
Paloaltogeneric.ml
KasperskyHEUR:Trojan.MSIL.Agent.gen
BitDefenderIL:Trojan.MSILMamut.5948
AvastWin32:TrojanX-gen [Trj]
Ad-AwareIL:Trojan.MSILMamut.5948
SophosMal/Generic-S
VIPREIL:Trojan.MSILMamut.5948
TrendMicroTROJ_GEN.R002C0WH622
McAfee-GW-EditionArtemis!Trojan
FireEyeIL:Trojan.MSILMamut.5948
EmsisoftIL:Trojan.MSILMamut.5948 (B)
SentinelOneStatic AI – Suspicious PE
GDataIL:Trojan.MSILMamut.5948
JiangminTrojan.MSIL.aneit
MAXmalware (ai score=82)
Antiy-AVLTrojan/MSIL.Agent
ArcabitIL:Trojan.MSILMamut.D173C
ViRobotTrojan.Win32.Z.Wacapew.1680384
ZoneAlarmHEUR:Trojan.MSIL.Agent.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.MSILMamut.C5219451
BitDefenderThetaGen:NN.ZemsilF.34592.Mn0@a4hwp8m
ALYacIL:Trojan.MSILMamut.5948
MalwarebytesMalware.AI.3774974
TrendMicro-HouseCallTROJ_GEN.R002C0WH622
RisingTrojan.Agent!8.B1E (CLOUD)
IkarusTrojan.IL.MSILMamut
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGWin32:TrojanX-gen [Trj]
PandaTrj/Chgt.AA

How to remove Malware.AI.3774974?

Malware.AI.3774974 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment