Malware

How to remove “Malware.AI.378770263”?

Malware Removal

The Malware.AI.378770263 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.378770263 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.378770263?


File Info:

crc32: B95E484D
md5: b8ca64d918952a56447c27a120733272
name: B8CA64D918952A56447C27A120733272.mlw
sha1: 2afacaff715772f849b843792478e529ac588f3a
sha256: 275ab99fad4759728f2993ebddc1acf33b880670b46b1d62f8a75debaa17b23a
sha512: a0f7ffaa48cd599b47ab02b842aadd6f2509a68ca958200d6e392f85f20e3231397e3db4eddb837243bc3b82194423b8045186f628714bec73920ef5bf964e1b
ssdeep: 6144:vwM94WC9r5GY4GNMV2AJX4F+/ARFHwrGJmVGyX9I/R1geiFsfDhE0:vwxWC5p4VaEIvwSJFz/rhr
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright xa9 2009-2016 All Rights Reserved
InternalName: Hafup
FileVersion: 1.2.21.44
CompanyName: Mocumu Ltd.
LegalTrademarks:
ProductName: Pepor Hamunahem
ProductVersion: 3.4.15.26
FileDescription:
OriginalFilename: Hafup.exe

Malware.AI.378770263 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 005380ab1 )
LionicTrojan.Win32.Delf.lwkW
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/DealPly.a1f44f75
K7GWAdware ( 005380ab1 )
Cybereasonmalicious.918952
CyrenW32/DealPly.DO.gen!Eldorado
ESET-NOD32a variant of Win32/DealPly.XE potentially unwanted
APEXMalicious
AvastFileRepMalware
Kasperskynot-a-virus:HEUR:AdWare.Win32.DealPly.pef
BitDefenderAdware.DealPly.2.Gen
ViRobotAdware.Dealply.326656.AMD
MicroWorld-eScanAdware.DealPly.2.Gen
TencentWin32.Adware.Dealply.Piac
Ad-AwareAdware.DealPly.2.Gen
SophosGeneric PUA CK (PUA)
ComodoApplicUnwnt@#2635nqpnhzsni
BitDefenderThetaGen:NN.ZelphiF.34266.tmKfaasFAbgi
TrendMicroAdware.Win32.DEALPLY.SMD
McAfee-GW-EditionBehavesLike.Win32.PUPXKT.fc
FireEyeGeneric.mg.b8ca64d918952a56
EmsisoftAdware.DealPly.2.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.jydc
AviraHEUR/AGEN.1114815
Antiy-AVLGrayWare[AdWare]/Win32.DealPly
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitAdware.DealPly.2.Gen
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.DealPly.pef
GDataAdware.DealPly.2.Gen
Acronissuspicious
McAfeeArtemis!B8CA64D91895
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.378770263
PandaTrj/Genetic.gen
TrendMicro-HouseCallAdware.Win32.DEALPLY.SMD
RisingAdware.DealPly!1.AA42 (CLASSIC)
YandexTrojan.GenAsa!4lNpu3kTDsM
IkarusPUA.DealPly
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/DealPly
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Malware.AI.378770263?

Malware.AI.378770263 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment