Malware

Malware.AI.1252536302 removal tips

Malware Removal

The Malware.AI.1252536302 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1252536302 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1252536302?


File Info:

name: B40E0E89D58D3C19A501.mlw
path: /opt/CAPEv2/storage/binaries/93128ca5c1f55f8e1e87401a12b5540d8a103168d60d8e80ded487746a7c84d5
crc32: F0952441
md5: b40e0e89d58d3c19a50144a3860daec8
sha1: e21719f46d9f5f348ad058ea21eb55fad281f822
sha256: 93128ca5c1f55f8e1e87401a12b5540d8a103168d60d8e80ded487746a7c84d5
sha512: ed59dc56304618387f3e00e8200d7cf2b674c260b1d221c6a65a2f4bb2ecb364f30e7ece45b11e41aae890d3751728d3dfe533fe81582321b27e79eebd4be5a8
ssdeep: 24576:tANfD4UWNfD4UONfD4U1NfD4UvNfD4UyNfD4UaNfD4URNfD4Ul:aZYZsZLZpZgZgZHZ7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1644512669CDCE695C8B30A755A2A00F399B13FB7BF16DA253E0C05614CA4C77E91B0B3
sha3_384: d4c2242c13ac69e90453c358f73929f2396e3ad7aca1bf68e4eb80ec40859e65319d36749d176b9f05e28e30b512a9e3
ep_bytes: 6838244000e8f0ffffff000000000000
timestamp: 2012-06-02 08:29:02

Version Info:

Translation: 0x0804 0x04b0
Comments: CF空白名称生成器
CompanyName: STRIVESOFT
FileDescription: CF空白名称生成器
LegalCopyright: strivesoft
LegalTrademarks: strivesoft
ProductName: CF空白名称生成器
FileVersion: 1.00
ProductVersion: 1.00
InternalName: CF空白名称生成器
OriginalFilename: CF空白名称生成器.exe

Malware.AI.1252536302 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
SkyhighBehavesLike.Win32.CoinMiner.tc
MalwarebytesMalware.AI.1252536302
Cybereasonmalicious.46d9f5
BitDefenderThetaGen:NN.ZevbaCO.36792.in1@aGW9g3db
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
APEXMalicious
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.b40e0e89d58d3c19
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Win32.Wacatac
Kingsoftmalware.kb.a.911
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Worm/Win32.VBNA.C15967
McAfeeArtemis!B40E0E89D58D
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.1252536302?

Malware.AI.1252536302 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment