Malware

What is “Malware.AI.3877754809”?

Malware Removal

The Malware.AI.3877754809 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3877754809 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Possible date expiration check, exits too soon after checking local time
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.3877754809?


File Info:

name: EDB98687F7D520C74915.mlw
path: /opt/CAPEv2/storage/binaries/395e28f8db6b64040f5f5ee17f813cb8b63ad3baa1b13f314225a6ad8a856d82
crc32: 797810C8
md5: edb98687f7d520c749152a6c557a6d83
sha1: b89773b8b0cd416c50246b70d71305cc51f724da
sha256: 395e28f8db6b64040f5f5ee17f813cb8b63ad3baa1b13f314225a6ad8a856d82
sha512: 5a7c1cb37dbf4363fc3a9bb58260562c83f7c2b1582886e8931492208916d5c9d6cd558f63cbe50ad1806a26a0a30403cf8d596e8574d27d992b817bb118a5bb
ssdeep: 1536:o+QWvZhSRqln5IUmDjoXV2K1uCyfvRR6hgtSsH6SF7:8WvZ0Rqln5I21uZfvRwCSDk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T134638DC0E951A2B1D06BD53054BA5F3656726C23D8B69B0EE0B1F8580EF3100E63B9BF
sha3_384: 73a029fb82e5d3004a3292f3d421bcf561d7da9f05bf7d51b837fdd6413bcb57e5d88fade5569a74281badfd269fa432
ep_bytes: e802feffff6a5c68a0180001e86f0600
timestamp: 1999-12-23 00:31:56

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Windows host process (Rundll32)
FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
InternalName: rundll
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: RUNDLL32.EXE
ProductName: Microsoft® Windows® Operating System
ProductVersion: 6.1.7600.16385
Translation: 0x0409 0x04b0

Malware.AI.3877754809 also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.edb98687f7d520c7
MalwarebytesMalware.AI.3877754809
VIPRETrojan.Win32.Generic!BT
Cybereasonmalicious.8b0cd4
BitDefenderThetaGen:NN.ZexaF.34062.eq2@aufRM@ai
SymantecML.Attribute.HighConfidence
AvastWin32:Virut-ASO
McAfee-GW-EditionBehavesLike.Win32.Virutrem.lc
SentinelOneStatic AI – Suspicious PE
SophosGeneric ML PUA (PUA)
APEXMalicious
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
CylanceUnsafe
IkarusTrojan-Downloader.Win32.Boaxxe
eGambitUnsafe.AI_Score_99%
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.3877754809?

Malware.AI.3877754809 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment