Malware

Malware.AI.3798952078 removal tips

Malware Removal

The Malware.AI.3798952078 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3798952078 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3798952078?


File Info:

name: 6DB32CDD618740508D49.mlw
path: /opt/CAPEv2/storage/binaries/12bcf345f1a6af871c643db1be0f4cc9a2f8e2cba145b40bb053e727cf9e6664
crc32: F5ED174E
md5: 6db32cdd618740508d499a4bc954fce2
sha1: 3fae7cc8979cf2bc5b495ced1b1b5fae2d533be4
sha256: 12bcf345f1a6af871c643db1be0f4cc9a2f8e2cba145b40bb053e727cf9e6664
sha512: aaefa4b234dd72e140a14b78c142394db02ed6bab30fd62a76bf980a4c4ae475aa8a7ca955447e794504b3346d6d73b9799e7aeae6d3cc48c60875643ec44b68
ssdeep: 3072:aVzcT4Y+I9gTEzEMfBqnXfL3lZA8ljfWd0VE3un16lv:0cTJ+zQE6BqTjA8Wd0WgEt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D5D3020677B7E69CE0AB4BF943EB82406BE5E80F4843976372D47C6829BF2416CAC554
sha3_384: 8d45bbbb54c479407522c377f3c6f87afb0012f205e18b48c554499ecaaaa54357b5fd18d9794428cd965f3709889490
ep_bytes: 6090b81bd04500b9000000008a140880
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.3798952078 also known as:

LionicTrojan.Win32.Generic.4!c
FireEyeGeneric.mg.6db32cdd61874050
SkyhighBehavesLike.Win32.Dropper.cc
McAfeeArtemis!6DB32CDD6187
Cylanceunsafe
K7AntiVirusTrojan ( 7000000f1 )
K7GWTrojan ( 7000000f1 )
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaGen:NN.ZexaF.36802.iqX@aeB4TCL
Elasticmalicious (moderate confidence)
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002H06C724
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
IkarusVirus.Win32.JunkPoly
WebrootW32.Malware.Gen
GoogleDetected
Antiy-AVLTrojan/Win32.SGeneric
XcitiumPacked.Win32.MUPX.Gen@24tbus
CynetMalicious (score: 100)
MalwarebytesMalware.AI.3798952078
ZonerProbably Heur.ExeHeaderL
SentinelOneStatic AI – Malicious PE

How to remove Malware.AI.3798952078?

Malware.AI.3798952078 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment