Malware

How to remove “Malware.AI.1806002700”?

Malware Removal

The Malware.AI.1806002700 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1806002700 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Installs an hook procedure to monitor for mouse events

How to determine Malware.AI.1806002700?


File Info:

name: 863DDB13CBED292E5783.mlw
path: /opt/CAPEv2/storage/binaries/691e250011cfef941464fb0114895f8731c08e84bb5b0e52bdfa08ade2980b07
crc32: A5A1ADA2
md5: 863ddb13cbed292e5783f7648bd97833
sha1: 3006b1b5268763de76e0675cad90d5814ee4ceeb
sha256: 691e250011cfef941464fb0114895f8731c08e84bb5b0e52bdfa08ade2980b07
sha512: e6f4b22c4ed2074058dfb4d85f8e551d394f936494a71541265cde61c00fcbe222b8c2b9beed3eeaa3642045764e7aa22c1df7eab7809684edce47b261d23d97
ssdeep: 12288:Eop4hNihfqVnIbBrblNQb/YGwyzbIA9oJ:zp4hNiwVnOBrp6XwyzbVuJ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17BC4070036A6DBB5E6930630E9E98E64D5EDB4D01F71894FFF90961988E226370D7E0F
sha3_384: f40b5661f8c700bdb64910e6bb70547b35a84ff53cb5a38613b3c2c57c2185e0bcfb18cfa82b6f30e699711dc487f173
ep_bytes: 558bec6aff68f0424400682814420064
timestamp: 1996-05-26 05:21:28

Version Info:

CompanyName: DMA Design Ltd
FileDescription: GTA2 Manager
FileVersion: 6.66
InternalName: fingerbob
LegalCopyright: Copyright DMA Design Ltd(C) 1999
OriginalFilename: fingerbob.EXE
ProductName: GTA2 Manager
ProductVersion: 8.8
Translation: 0x0409 0x04b0

Malware.AI.1806002700 also known as:

BkavW32.AIDetect.malware2
LionicVirus.Win32.Virut.lJwt
FireEyeGeneric.mg.863ddb13cbed292e
McAfeeArtemis!863DDB13CBED
SangforTrojan.Win32.Sabsik.FL
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderThetaGen:NN.ZexaF.34212.Hu3@aCZRZKji
CyrenW32/SuspPack.FW.gen!Eldorado
AvastWin32:Virtu-F [Inf]
McAfee-GW-EditionBehavesLike.Win32.BadFile.hh
GridinsoftRansom.Win32.Miner.sa
Acronissuspicious
MalwarebytesMalware.AI.1806002700
APEXMalicious
SentinelOneStatic AI – Malicious PE
FortinetW32/CoinMiner.F
AVGWin32:Virtu-F [Inf]
Cybereasonmalicious.526876
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.1806002700?

Malware.AI.1806002700 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment