Malware

What is “Malware.AI.1236226134”?

Malware Removal

The Malware.AI.1236226134 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1236226134 virus can do?

  • Uses Windows utilities for basic functionality
  • Authenticode signature is invalid
  • A ping command was executed with the -n argument possibly to delay analysis

How to determine Malware.AI.1236226134?


File Info:

name: 3C6173D8693510F6363B.mlw
path: /opt/CAPEv2/storage/binaries/5851043b2c040fb3dce45c23fb9f3e8aefff48e0438dec7141999062d46c592d
crc32: 805B3288
md5: 3c6173d8693510f6363b608c09feebb1
sha1: 477a1ce31353e8c26a8f4e02c1d378295b302c9e
sha256: 5851043b2c040fb3dce45c23fb9f3e8aefff48e0438dec7141999062d46c592d
sha512: 9e356648992618509c30ccf71e08371613241d20b7fce7847f864d88574d8a649a3f9883c297c05b9514eecb31d3c8128a79a83f3f4c76b7ee2b1f2306c5edc4
ssdeep: 1536:xKjjsu0P5SBFqUZ/sb+cOasWjcdf5h9/BZcwfRLL0KFe:4IhSBMOFL9/BLe
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CAD3E605F2C3C8F4F923223514755D031B26FC5A9AA56E8F32CCF9AA3935181652BEB7
sha3_384: e19ef9d8d00aa617f4ce852571e28c7fed615532ec2dd29ee201bf26a35d2b42101f78347daa72e9ae4316ff792c1d17
ep_bytes: e858170000e97ffeffff85c07506660f
timestamp: 2022-01-17 07:04:17

Version Info:

0: [No Data]

Malware.AI.1236226134 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agentb.X!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Doina.31165
SkyhighBehavesLike.Win32.PWSZbot.cm
McAfeeTrojan-FUIP!3C6173D86935
Cylanceunsafe
ZillyaTrojan.Agent.Win32.2726436
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00587ff91 )
AlibabaTrojanDownloader:Win32/Tnega.30754da7
K7GWTrojan ( 00587ff91 )
Cybereasonmalicious.31353e
ArcabitTrojan.Doina.D79BD
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Agent.ADMW
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.MustangPanda-9944205-0
KasperskyHEUR:Trojan.Win32.Agentb.gen
BitDefenderGen:Variant.Doina.31165
NANO-AntivirusTrojan.Win32.Loader.jnotae
AvastWin32:MalwareX-gen [Trj]
TencentMalware.Win32.Gencirc.10bec564
SophosMal/Generic-R
DrWebTrojan.Loader.983
VIPREGen:Variant.Doina.31165
TrendMicroTROJ_GEN.R002C0DJS23
EmsisoftGen:Variant.Doina.31165 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Agentb.lts
WebrootW32.Trojan.Gen
VaristW32/Agent.EGZ.gen!Eldorado
Antiy-AVLTrojan[APT]/Win32.MustangPanda
Kingsoftmalware.kb.a.958
XcitiumMalware@#32ygcg9abyxhs
MicrosoftTrojanDownloader:Win32/Tnega!MSR
ViRobotTrojan.Win32.S.Agent.136704.CY
ZoneAlarmHEUR:Trojan.Win32.Agentb.gen
GDataGen:Variant.Doina.31165
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C4928772
BitDefenderThetaGen:NN.ZexaF.36680.iuW@aOniD8ci
TACHYONTrojan/W32.Agent.136704.XQ
VBA32Trojan.Agentb
MalwarebytesMalware.AI.1236226134
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DJS23
RisingTrojan.Generic@AI.82 (RDMK:StlGbp+D7emkWiRfcZoJmg)
IkarusBackdoor.Korplug
MaxSecureTrojan.Malware.9325066.susgen
FortinetW32/Agent.ADMW!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.1236226134?

Malware.AI.1236226134 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment