Malware

About “Malware.AI.3987548807” infection

Malware Removal

The Malware.AI.3987548807 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3987548807 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Harvests cookies for information gathering

How to determine Malware.AI.3987548807?


File Info:

name: 750EF51A4338FC7A3396.mlw
path: /opt/CAPEv2/storage/binaries/e1160cb01341ff1ad662df5767377ec2d892bccfb65bf5cfa82aa889799588fa
crc32: 431495DA
md5: 750ef51a4338fc7a3396dd2c5ce92b13
sha1: de226e3fd7593a06f0a30d8f18a2cf652546a27f
sha256: e1160cb01341ff1ad662df5767377ec2d892bccfb65bf5cfa82aa889799588fa
sha512: 1a1dc59c77dff8452b21fc90bb9693509747e291b7a5b998a82aee95b98d684dded33341e1e9359a263cbe8e6ff4474e9ef728729644151a32d72b162917d1ff
ssdeep: 6144:H8JsLcpjzTDDmHayakLkrb4NSarQWtT+tG1XX:8zxzTDWikLSb4NS7ET+tG1XX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DF64CF02FDC195B2C5210C325669AB61253DBD201F248EEBE3D86E6DE9341D0FB35BA7
sha3_384: 487f449e04bdbbb98a72c02503dd3dde5e62165a81e059d0303366da059f0c0c5013bd88bd80b43e8c019713c4b49faa
ep_bytes: e864040000e988feffff3b0d68e64300
timestamp: 2021-06-11 09:16:47

Version Info:

0: [No Data]

Malware.AI.3987548807 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.NanoBot.trQD
MicroWorld-eScanTrojan.GenericKD.48699721
ALYacTrojan.GenericKD.48699721
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
Elasticmalicious (moderate confidence)
APEXMalicious
BitDefenderTrojan.GenericKD.48699721
Ad-AwareTrojan.GenericKD.48699721
EmsisoftTrojan.GenericKD.48699721 (B)
VIPRETrojan.GenericKD.48699721
McAfee-GW-EditionBehavesLike.Win32.Dropper.fh
FireEyeTrojan.GenericKD.48699721
WebrootW32.Trojan.Gen
ArcabitTrojan.Generic.D2E71949
GDataTrojan.GenericKD.48699721
CynetMalicious (score: 100)
McAfeeArtemis!750EF51A4338
MAXmalware (ai score=85)
MalwarebytesMalware.AI.3987548807
MaxSecureTrojan.Malware.300983.susgen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.3987548807?

Malware.AI.3987548807 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment