Malware

About “Malware.AI.4078438378” infection

Malware Removal

The Malware.AI.4078438378 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4078438378 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk

How to determine Malware.AI.4078438378?


File Info:

name: E97CB87566FA8BCFD910.mlw
path: /opt/CAPEv2/storage/binaries/a35c75804781a36b241dd7d2fea8b09dc626c97ec8292ef4db70605287a56577
crc32: F88D7AA1
md5: e97cb87566fa8bcfd91022a615c98418
sha1: 84ae660e1601ee81eaadc3186fa8a2cea6650af2
sha256: a35c75804781a36b241dd7d2fea8b09dc626c97ec8292ef4db70605287a56577
sha512: d46c36e9dbe13bfcd5a6ea6a36f246c43c47168b59a87ffac19b3de409f49f8500a443940b6e92e88b1ea475e38ea7af0b89a7466a84073696d52fbb7abe51e3
ssdeep: 6144:UBlkZvaF4NTBwajdE1OAGDX0yxyv0d54GgZ7:UoSWNTqz1KDkyd/4GU
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11434E101F6F112F3E9F1087115E6722FE775A6288B10A9EBC34C3E9159039D4A67E3E9
sha3_384: 0292d7398ac81295ec141e7e6a06809e2b5e2109f5c486443159557af5664e6e018510f16f511862ae71fec958d1690a
ep_bytes: 68ac00000068000000006868804100e8
timestamp: 2019-07-30 08:52:45

Version Info:

0: [No Data]

Malware.AI.4078438378 also known as:

BkavW32.Common.B499F15E
LionicTrojan.Win32.Encoder.trrL
Elasticmalicious (high confidence)
ClamAVWin.Trojan.Generic-10011119-0
FireEyeGeneric.mg.e97cb87566fa8bcf
CAT-QuickHealTrojan.GenericPMF.S16976269
SkyhighBehavesLike.Win32.RealProtect.dc
McAfeeRDN/Generic.dx
Cylanceunsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
SophosGeneric ML PUA (PUA)
GoogleDetected
Kingsoftmalware.kb.a.886
AhnLab-V3Malware/Win.Generic.R488739
BitDefenderThetaGen:NN.ZexaF.36680.puW@aarkIlii
MalwarebytesMalware.AI.4078438378
TrendMicro-HouseCallTROJ_GEN.R002H06L523
RisingTrojan.Generic@AI.100 (RDMK:dA9odcfTKC0ulsxG7/6RiQ)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.74546411.susgen
FortinetW32/PossibleThreat
Cybereasonmalicious.e1601e
DeepInstinctMALICIOUS

How to remove Malware.AI.4078438378?

Malware.AI.4078438378 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment