Malware

Malware.AI.379364593 removal tips

Malware Removal

The Malware.AI.379364593 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.379364593 virus can do?

  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Malware.AI.379364593?


File Info:

name: 09EA99786071B7BFD572.mlw
path: /opt/CAPEv2/storage/binaries/3dee02960c8e168c7fbe7b1844413d1a6f6d75e2ea7045ec55d529396cbf42e3
crc32: BFB3BF29
md5: 09ea99786071b7bfd5720a26e479e198
sha1: 27d217be79c8c9b10af665319c9920d1b0227a50
sha256: 3dee02960c8e168c7fbe7b1844413d1a6f6d75e2ea7045ec55d529396cbf42e3
sha512: 2dbb269f47a04262dbda6943cf3a9b2d93620d139b57f0cb60867f27fef9cf5f4c78bdc2b37a807218d136018cf2da20647294307685e9d5a3ecd371cdc7fb9f
ssdeep: 768:Q925ZmU0HaLCMH0UG/mjEOiuXY02jqFN0:Q92nXL3uI1A
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15103E801D4E140AAE8F340FAC2FA1B7DFC7DAA20935466D393C4ACE667B1AD5B535306
sha3_384: 7352f0dfe0327084678035a6ad50483b07cc3a8df69807cea91cc61aff3a386386cb8ee00c53f122daa3f8c578abdcb9
ep_bytes: 558bece898fdffff6a00ff15c0704000
timestamp: 2022-07-17 18:59:50

Version Info:

0: [No Data]

Malware.AI.379364593 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
ElasticWindows.Trojan.Bughatch
MicroWorld-eScanTrojan.GenericKD.61608876
FireEyeGeneric.mg.09ea99786071b7bf
ALYacTrojan.GenericKD.61608876
CylanceUnsafe
VIPRETrojan.GenericKD.61608876
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0058b90e1 )
AlibabaHackTool:Win32/Meterpreter.7bc41b9f
K7GWTrojan-Downloader ( 0058b90e1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.34784.cqX@aCDZQJl
CyrenW32/SecRisk-ProcessPatcher-base
SymantecTrojan Horse
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.FYZ
APEXMalicious
KasperskyUDS:Trojan.Win32.GenericML.xnet
BitDefenderTrojan.GenericKD.61608876
AvastWin32:Trojan-gen
TencentWin32.Trojan-Downloader.Oader.Qgil
Ad-AwareTrojan.GenericKD.61608876
EmsisoftTrojan.GenericKD.61608876 (B)
ZillyaDownloader.Agent.Win32.488379
TrendMicroMal_DLDER
McAfee-GW-EditionBehavesLike.Win32.Agent.nm
Trapminemalicious.high.ml.score
SophosML/PE-A + Mal/Emogen-Y
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Generic.ASMalwS.6C82
ArcabitTrojan.Generic.D3AC13AC
ZoneAlarmUDS:Trojan.Win32.GenericML.xnet
GDataTrojan.GenericKD.61608876
CynetMalicious (score: 100)
AhnLab-V3Worm/Win.Dlder.C4781503
Acronissuspicious
McAfeeGenericRXUB-XB!09EA99786071
MAXmalware (ai score=88)
VBA32suspected of Trojan.Downloader.gen
MalwarebytesMalware.AI.379364593
TrendMicro-HouseCallMal_DLDER
RisingTrojan.Generic@AI.90 (RDML:gq3SSiFmqWwqtAGjFk59CA)
YandexTrojan.DL.Agent!ClfUEOodpz8
IkarusTrojan-Downloader.Win32.Agent
FortinetW32/PossibleThreat
AVGWin32:Trojan-gen
Cybereasonmalicious.e79c8c
PandaTrj/Chgt.AB

How to remove Malware.AI.379364593?

Malware.AI.379364593 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment