Malware

Malware.AI.4138247389 removal tips

Malware Removal

The Malware.AI.4138247389 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4138247389 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4138247389?


File Info:

name: E138AFBF715887AA45DA.mlw
path: /opt/CAPEv2/storage/binaries/32c2d6f08220d6acfb4515f6c457547abced8eb2e4c286965963aa9dd0bd016e
crc32: B1969B6A
md5: e138afbf715887aa45da3b87d6354bde
sha1: 0adffd2385baa91e9930416a2246a345af2f4ae6
sha256: 32c2d6f08220d6acfb4515f6c457547abced8eb2e4c286965963aa9dd0bd016e
sha512: b9ad16dc5266cac70d9b1a3aa893a8a8a5c511f607e79fd2695a75b9492184e68c9a09af06353ce8022784cc2947cc373c4d5de42a6ff4af710fba776dba7ac5
ssdeep: 48:ZjXiz8HKR20fOO6Vrond2vyFSu8x9q5uxB2nApmwGLjUxTYbCepb6s2hUlrurthK:ZjQ3j6cInZq5uxwnumwC4sbCylqrt4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19B81D67A7F8A81B7C3775BB706F3858AA5B1BA103F02C25E0149870854666C89E3CBC5
sha3_384: 3be65409d8a07c767a4e174a9b49d7e61fe1a3493c72a34c5b5e945bd56292ac9b2ce1a5e5d488bff55c6b9b2395eb8e
ep_bytes: 8bec81c410ffffffe8000000005b6681
timestamp: 2014-07-07 08:12:37

Version Info:

0: [No Data]

Malware.AI.4138247389 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Upatre.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Ppatre.Gen.1
FireEyeGeneric.mg.e138afbf715887aa
ALYacTrojan.Ppatre.Gen.1
MalwarebytesMalware.AI.4138247389
ZillyaDownloader.Waski.Win32.59487
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0049d22b1 )
AlibabaMalware:Win32/km_2ad4.None
K7GWTrojan-Downloader ( 0049d22b1 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Upatre.BN
CyrenW32/Trojan.EIBJ-5084
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Waski.F
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Downloader.Upatre-9953299-0
KasperskyHEUR:Trojan-Downloader.Win32.Upatre.gen
BitDefenderTrojan.Ppatre.Gen.1
NANO-AntivirusTrojan.Win32.DownLoad3.dceouh
SUPERAntiSpywareTrojan.Agent/Gen-Upatre
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Downloader.Win32.Upatre.hs
SophosMal/Upatre-AS
DrWebTrojan.DownLoad3.33795
VIPRETrojan.Ppatre.Gen.1
TrendMicroTROJ_UPATRE.SM37
McAfee-GW-EditionBehavesLike.Win32.Generic.xt
Trapminemalicious.high.ml.score
EmsisoftTrojan.Ppatre.Gen.1 (B)
IkarusTrojan-Downloader.Win32.Waski
GDataWin32.Trojan.PSE.2TXXTV
JiangminTrojanDownloader.Generic.bcqm
GoogleDetected
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.TSGeneric
ArcabitTrojan.Ppatre.Gen.1
ZoneAlarmHEUR:Trojan-Downloader.Win32.Upatre.gen
MicrosoftTrojan:Win32/Upatre.MA!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R120254
Acronissuspicious
McAfeeGenericATG-FABE!E138AFBF7158
MAXmalware (ai score=84)
VBA32TrojanSpy.Zbot
Cylanceunsafe
TrendMicro-HouseCallTROJ_UPATRE.SM37
RisingDownloader.Waski!1.E076 (CLASSIC)
YandexTrojan.GenAsa!+b10tL5tlnc
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Upatre.Gen
FortinetW32/Waski.C!tr
BitDefenderThetaGen:NN.ZexaF.36308.aiX@aSaSDRo
AVGWin32:TrojanX-gen [Trj]
PandaTrj/Genetic.gen

How to remove Malware.AI.4138247389?

Malware.AI.4138247389 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment