Malware

Should I remove “Malware.AI.3812378802”?

Malware Removal

The Malware.AI.3812378802 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3812378802 virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Detects Avast Antivirus through the presence of a library
  • A process attempted to delay the analysis task by a long amount of time.

How to determine Malware.AI.3812378802?


File Info:

name: 187F91090DF376042FD9.mlw
path: /opt/CAPEv2/storage/binaries/e4b70f69dc2002c3bd853a6d1b1964830492f0d49af996e465751e5b8d86156f
crc32: 626FAAEE
md5: 187f91090df376042fd9b6ffcb076d27
sha1: 64c5deed0177eb50159fcd6c26a5c56fa576f6b8
sha256: e4b70f69dc2002c3bd853a6d1b1964830492f0d49af996e465751e5b8d86156f
sha512: 514d72dd7d770c873d46145033aa71ae456e884b210bd93909fad499f98e9669ba23f13f9d3b65a3e5a2ac8031d904b878b84841fbc62c70fa9d64ecfad72de0
ssdeep: 12288:b+xCZIt+cbZrNVM0ywBpAacIAcyJfR1n2jEfAETOvjYVmyi:YhRZrN+0y8pAacIYfR1n2jEIETL8yi
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T182555C67B247F43EE0AA86350533A598993F7B2A75528D1E46F058CACFB50402F3B64F
sha3_384: 53787af21cf9dae1163e0d496112bd6ba436469560918b4f4a893e914ccfa46530ba510154e214d591b9d9747af401ac
ep_bytes: 558becb9440000006a006a004975f951
timestamp: 2017-09-29 12:59:17

Version Info:

0: [No Data]

Malware.AI.3812378802 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fugrafa.32677
FireEyeGeneric.mg.187f91090df37604
ALYacGen:Variant.Fugrafa.32677
CylanceUnsafe
ZillyaDownloader.Delf.Win32.55653
SangforTrojan.Win32.Skeeyah.A
K7AntiVirusTrojan-Downloader ( 00517cbf1 )
AlibabaTrojanDownloader:Win32/Generic.7ab56da3
K7GWTrojan-Downloader ( 00517cbf1 )
Cybereasonmalicious.90df37
BitDefenderThetaAI:Packer.20E4D6751F
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Delf.CET
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Fugrafa.32677
NANO-AntivirusTrojan.Win32.Delf.etesri
AvastWin32:Malware-gen
RisingDownloader.Delf!8.16F (CLOUD)
Ad-AwareGen:Variant.Fugrafa.32677
EmsisoftGen:Variant.Fugrafa.32677 (B)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.th
SophosMal/Generic-S
IkarusTrojan-Downloader.Win32.Delf
AviraTR/Dldr.Delf.dbifw
MicrosoftTrojan:Win32/Tiggre!rfn
GDataGen:Variant.Fugrafa.32677
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win32.Agentb.C2160525
McAfeeArtemis!187F91090DF3
MAXmalware (ai score=100)
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.3812378802
APEXMalicious
TencentWin32.Trojan.Heur.Dyqx
YandexTrojan.DL.Delf!fYesJgAYGZE
SentinelOneStatic AI – Suspicious PE
FortinetW32/Delf.CET!tr.dldr
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Malware.AI.3812378802?

Malware.AI.3812378802 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment