Malware

Malware.AI.1281688587 malicious file

Malware Removal

The Malware.AI.1281688587 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1281688587 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Malware.AI.1281688587?


File Info:

name: 3AB86A367087142E3136.mlw
path: /opt/CAPEv2/storage/binaries/0965df0885d1eead2f9381c9ef240d1056dc1ba629c89847b705d37440d9d82c
crc32: A4C02D6E
md5: 3ab86a367087142e3136e3f822cfd684
sha1: e56e401a1ecbb3b8d0d2b6a5bc10a7f8c0ad187c
sha256: 0965df0885d1eead2f9381c9ef240d1056dc1ba629c89847b705d37440d9d82c
sha512: 44a8eb3492e04a768aed2867074ed4fda564887ee39d3f3e0369724ef5cd8c41c1f6c463b5dc3dbf8b14c72ee9acd84e18e7b7a9013867c9f2554d31359828cd
ssdeep: 1536:oJb0zEAdDl09cvOVjv8daThQTz0cfFneib5m5l8D3rLVw2rAUopPGdBqPTEzh:oJb0zEGDSTiHxeibQ5lQaIopgBqbEd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T126E3BF1279D4C4F7EB46013009F66B7B9B79D9700E618F03A724CF4E5DB62A18E2B2D6
sha3_384: 2d891ccdd62943e4043bc804213237e68d05d2997eb537db2db3f8d67eefef518bf44ede553f317f2afeaa10c42fc9bd
ep_bytes: 558bec6aff6800bd410068f405410064
timestamp: 2008-05-04 03:21:13

Version Info:

0: [No Data]

Malware.AI.1281688587 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.61027210
ALYacTrojan.GenericKD.61027210
CylanceUnsafe
VIPRETrojan.GenericKD.61027210
SangforBackdoor.Win32.Agent.Vy4c
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaTrojan:Win32/BackdoorX.b805145e
K7GWTrojan ( 0003904e1 )
K7AntiVirusTrojan ( 0003904e1 )
CyrenW32/ABRisk.PWWJ-3298
SymantecBackdoor.Locobad.B
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.ODO
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Mikey-9958102-0
BitDefenderTrojan.GenericKD.61027210
NANO-AntivirusTrojan.Win32.Graftor.jqnyqo
AvastWin32:BackdoorX-gen [Trj]
Ad-AwareTrojan.GenericKD.61027210
EmsisoftTrojan.GenericKD.61027210 (B)
DrWebTrojan.DownLoader6.54556
ZillyaBackdoor.Agent.Win32.45069
TrendMicroTROJ_GEN.R002C0OGP22
McAfee-GW-EditionRDN/Generic BackDoor
FireEyeGeneric.mg.3ab86a367087142e
GDataTrojan.GenericKD.61027210
JiangminBackdoor/Agent.cykn
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1212253
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMalwS.61
ArcabitTrojan.Generic.D3A3338A
ViRobotBackdoor.Win32.A.Agent.137628
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.ADH.C5214551
McAfeeRDN/Generic BackDoor
TACHYONTrojan/W32.Agent.147188.D
VBA32Adware.Joqer
MalwarebytesMalware.AI.1281688587
TrendMicro-HouseCallTROJ_GEN.R002C0OGP22
RisingTrojan.Agent!8.B1E (CLOUD)
YandexBackdoor.Agent!OVM+5jXyY+A
IkarusTrojan.Win32.Turla
MaxSecureTrojan.Malware.186192471.susgen
FortinetW32/Agent.ODO!tr
BitDefenderThetaGen:NN.ZexaF.34582.imY@a86A9Cb
AVGWin32:BackdoorX-gen [Trj]
Cybereasonmalicious.670871
PandaTrj/CI.A

How to remove Malware.AI.1281688587?

Malware.AI.1281688587 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment