Malware

Malware.AI.3790202679 removal tips

Malware Removal

The Malware.AI.3790202679 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3790202679 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Sample contains Overlay data
  • Possible date expiration check, exits too soon after checking local time
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3790202679?


File Info:

name: A4F5F30626B3BCB9B9C6.mlw
path: /opt/CAPEv2/storage/binaries/005f57f482cadcc7b3e069f5c6478b67e9801f8012d357c4cf1f6afb116a6e00
crc32: 4FF129AA
md5: a4f5f30626b3bcb9b9c63e4733a514bd
sha1: ff18729b9f2d472e1b0742098ebddcdd9e4b579a
sha256: 005f57f482cadcc7b3e069f5c6478b67e9801f8012d357c4cf1f6afb116a6e00
sha512: 4ae5e733ed500752bae465a445df0db8179c68d21b3b0cc262d432ed0ee6dbf4efb0d018f2265d936bf3d1638de5eee00dc36c091af3b48d899f868631f6d7b4
ssdeep: 1536:1U5iTP9cTYwyHKOau3yUyJCbgwmw7Qk3r:XD9cvyHyJH+
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T137A308D7FA86EDA3F925173989F58319133DE7C00B828B171D219D3A0B175A1BFC528A
sha3_384: 49811589ed0eaff36cd3ffc57f2d29de15a436994b24cdf24f707b2e685b75e633b4ee29d49e9dde1f0a56375d1873b6
ep_bytes: 83ec0cc7053450400000000000e8de09
timestamp: 2019-02-26 11:37:34

Version Info:

0: [No Data]

Malware.AI.3790202679 also known as:

MicroWorld-eScanTrojan.GenericKD.50270250
FireEyeGeneric.mg.a4f5f30626b3bcb9
McAfeeGenericRXJC-TB!A4F5F30626B3
CylanceUnsafe
SangforTrojan.Win32.ZPACK.Gen7
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Generic.1ca7d20a
K7GWRiskware ( 0040eff71 )
CyrenW32/Ursu.CT.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
TrendMicro-HouseCallTROJ_GEN.R002C0PDR22
BitDefenderTrojan.GenericKD.50270250
AvastWin32:Malware-gen
TencentWin32.Trojan.Crypt.Lorl
Ad-AwareTrojan.GenericKD.50270250
EmsisoftTrojan.GenericKD.50270250 (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen7
VIPRETrojan.GenericKD.50270250
TrendMicroTROJ_GEN.R002C0PDR22
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
SentinelOneStatic AI – Malicious PE
SophosMal/Generic-S
APEXMalicious
GDataTrojan.GenericKD.50270250
JiangminExploit.Agent.fb
AviraTR/Crypt.ZPACK.Gen7
ArcabitTrojan.Generic.D2FF102A
MicrosoftTrojan:Win32/Occamy.C00
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.50270250
MAXmalware (ai score=80)
MalwarebytesMalware.AI.3790202679
RisingTrojan.Crypto!8.364 (CLOUD)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.74718876.susgen
FortinetW32/Ursu.558C!tr
AVGWin32:Malware-gen
PandaTrj/GdSda.A

How to remove Malware.AI.3790202679?

Malware.AI.3790202679 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment