Malware

Malware.AI.3793053758 information

Malware Removal

The Malware.AI.3793053758 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3793053758 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Manipulates data from or to the Recycle Bin
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Anomalous binary characteristics

How to determine Malware.AI.3793053758?


File Info:

name: B9801D141F8BA9D8EB1A.mlw
path: /opt/CAPEv2/storage/binaries/3df90f2bbba23e3bc5b99ee7027ac25051e47db0b62f30c6821c93ecc3d090ca
crc32: E221C779
md5: b9801d141f8ba9d8eb1a8ab2e8a23003
sha1: 68fe63934bf4d88c22ca8a3efed07f766d11827a
sha256: 3df90f2bbba23e3bc5b99ee7027ac25051e47db0b62f30c6821c93ecc3d090ca
sha512: 55bc2bd008457d966869068a93e57a93f7506c190e777344af691af251d7ebf9f1608a6b6641d68fbc4b31c8d1a54bb3a49c1d05e3ea23bf2511488b8fb73ace
ssdeep: 1536:IJvJnBpwdaMIOOnToIfiV6pdQ+/BUwOF7KrV3TIdort:IJvxKaCqTBfioo9tF7KrVUdor
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17CA37E177AD10963DCF1063000DA9A1ACB7BFD30073695A7E74F6FEA1B219919A352CB
sha3_384: efca921396d77716c2a46379e438415b227d0257b273ea770b8fa60b394d9f0f5767e6cacb03545582927f928b2b1680
ep_bytes: 558bec6aff6800514100687419410064
timestamp: 2008-05-31 04:52:45

Version Info:

0: [No Data]

Malware.AI.3793053758 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Resur.B
FireEyeGeneric.mg.b9801d141f8ba9d8
CAT-QuickHealW32.Resur
McAfeeW32/Resur.b
CylanceUnsafe
K7AntiVirusVirus ( 0040f51e1 )
K7GWVirus ( 0040f51e1 )
CrowdStrikewin/malicious_confidence_60% (D)
BaiduWin32.Virus.Resur.a
CyrenW32/Resurrect.B
SymantecW32.Resure.38400
ESET-NOD32Win32/Resur.B
APEXMalicious
ClamAVWin.Virus.Resur-7001272-0
KasperskyVirus.Win32.Resur.e
BitDefenderWin32.Resur.B
NANO-AntivirusVirus.Win32.Resur.ccfj
AvastWin32:Resurrection
TencentVirus.Win32.Resur.gef
Ad-AwareWin32.Resur.B
SophosML/PE-A + W32/Resur-B
ComodoVirus.Win32.Resur.a@4xmlyr
F-SecureMalware.W32/Resur.b
DrWebWin32.Senna.5
ZillyaVirus.Resur.Win32.1
TrendMicroPE_RESUR.B
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.cm
EmsisoftWin32.Resur.B (B)
SentinelOneStatic AI – Suspicious PE
JiangminWin32/Resur.b
AviraW32/Resur.b
MAXmalware (ai score=88)
MicrosoftVirus:Win32/Resur.A!epo
GDataWin32.Resur.B
CynetMalicious (score: 100)
AhnLab-V3Win32/Resur.X983
BitDefenderThetaAI:FileInfector.9694FB900D
ALYacWin32.Resur.B
VBA32Virus.Win32.Resur.f
MalwarebytesMalware.AI.3793053758
TrendMicro-HouseCallPE_RESUR.B
RisingTrojan.Generic@AI.79 (RDMK:cmRtazohv5eXfrAyvLv5BWWagYUK)
YandexWin32.Resur.F
IkarusPacked.Win32.PePatch
MaxSecureVirus.W32.Resur.B
FortinetW32/Resurrect.B
AVGWin32:Resurrection
Cybereasonmalicious.41f8ba
PandaW32/Resur.B

How to remove Malware.AI.3793053758?

Malware.AI.3793053758 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment