Malware

How to remove “Malware.AI.3781232146”?

Malware Removal

The Malware.AI.3781232146 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3781232146 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Malware.AI.3781232146?


File Info:

name: 362F260FA542929CE46A.mlw
path: /opt/CAPEv2/storage/binaries/8b83d7af5648199d9576e120cea63190a746a4f63e822bada5a885dd5989c911
crc32: 596A3D8C
md5: 362f260fa542929ce46a4c241da145a1
sha1: 3aaa7cccf098725f24200dac762f9312c80478eb
sha256: 8b83d7af5648199d9576e120cea63190a746a4f63e822bada5a885dd5989c911
sha512: 27c97dafb3d61074b75f17cdee8ac96f8a37e851d276f9e5816119c573af287e0abfc6580ab93b462aa1173704dbbf01a1314e7722ab45e12f8838cda4e0dd61
ssdeep: 24576:LIXRwoiM84pWPjO7KX53RTh0tFda3TaewsAju:yiM84pWrOO53RTqtiGlju
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T174357A32FFB5D032C7BF0DB52BA5D7195839AA200F5116C3E3E89A9D59202E16732A17
sha3_384: d28e2d0824035a10cd70faa6fdccfe35d993983f0e823f6498705f41aecce7f6233fe9f8b1a6655f327d3d926f13af93
ep_bytes: 40534883ec20488bd9e88a050000488b
timestamp: 2100-03-02 06:33:42

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Client Server Runtime Process
FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
InternalName: CSRSS.Exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: CSRSS.Exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 10.0.17134.1
Translation: 0x0409 0x04b0

Malware.AI.3781232146 also known as:

LionicTrojan.Win32.Tedy.4!c
Elasticmalicious (high confidence)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CyrenW64/Ipamor.CZ.gen!Eldorado
SymantecTrojan.Gen.2
Paloaltogeneric.ml
ClamAVWin.Ransomware.WannaCry-9856297-0
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win64.Generic.th
IkarusTrojan.Dropper
JiangminWorm.AutoRun.awpi
Antiy-AVLTrojan/Generic.ASBOL.C6BF
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
McAfeeArtemis!362F260FA542
MalwarebytesMalware.AI.3781232146
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW64/Bulz.6330!tr
AVGFileRepMalware
AvastFileRepMalware
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Malware.AI.3781232146?

Malware.AI.3781232146 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment