Malware

Malware.AI.2006551034 (file analysis)

Malware Removal

The Malware.AI.2006551034 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2006551034 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.2006551034?


File Info:

name: C6F5D7B748042D30B300.mlw
path: /opt/CAPEv2/storage/binaries/d0409944360f757f5affabbb044a5b8440d26254155209f97d0ab9257d66764e
crc32: 4B813E43
md5: c6f5d7b748042d30b300edbb85d68114
sha1: 7a621794eeb15fddba2d4e87062f1bc48fac14c2
sha256: d0409944360f757f5affabbb044a5b8440d26254155209f97d0ab9257d66764e
sha512: e6663928926469d65688cd77d52e3bcacbd6a359c26f6e63308a2fa77faa79ca95c3b7bdaeb35c545ba0dd38b057dc0af34fcfe221fb476d96170a2a7c8d8cbf
ssdeep: 24576:J/iJ0VzD//mVSQnlsbq2zL8Nk+eAG7HIwsoR5mZ+n0I3hTTIyqv3KXdPx:JDiVSosbT/8NnVwsEkoP3h/x
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T173652304F8C09637E121167D5D8FD535A03D36123E7A218777CC968DAFBB18A28686EF
sha3_384: d4e23333d7be8d713dd91427b27932a5f1001e0ab7b496b9386b69543468cf972a21f3a98fa2f2df11facedb92f4b611
ep_bytes: 558bec83c4f0b89c9a4100e8b8abfeff
timestamp: 1992-06-19 22:22:17

Version Info:

Comments:
CompanyName: Magistr Softer
FileDescription: CFLF 0.24 Installation
FileVersion: 0.24
LegalCopyright: Magistr Softer
Translation: 0x0409 0x04e4

Malware.AI.2006551034 also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.Agent.2!c
MicroWorld-eScanGen:Trojan.Heur.JP.gyW@aOhlZogk
FireEyeGen:Trojan.Heur.JP.gyW@aOhlZogk
McAfeeArtemis!C6F5D7B74804
MalwarebytesMalware.AI.2006551034
SangforAdware.Win32.Agent.Vnio
AlibabaAdWare:Win32/Generic.a8c865a1
BitDefenderThetaAI:Packer.F22C90B01F
SymantecML.Attribute.HighConfidence
APEXMalicious
Kasperskynot-a-virus:AdWare.Win32.Agent.xxytlu
BitDefenderGen:Trojan.Heur.JP.gyW@aOhlZogk
AvastWin32:Malware-gen
EmsisoftGen:Trojan.Heur.JP.gyW@aOhlZogk (B)
VIPREGen:Trojan.Heur.JP.gyW@aOhlZogk
McAfee-GW-EditionBehavesLike.Win32.BadFile.tc
IkarusPUA.BAT.Cleanlog
GDataGen:Trojan.Heur.JP.gyW@aOhlZogk
MAXmalware (ai score=84)
ArcabitTrojan.Heur.JP.E4D645
ZoneAlarmnot-a-virus:AdWare.Win32.Agent.xxytlu
VBA32suspected of Trojan.Downloader.gen
ALYacGen:Trojan.Heur.JP.gyW@aOhlZogk
Cylanceunsafe
RisingTrojan.Generic@AI.89 (RDML:1zNL4ZVlD8nXUkpL3gw4oA)
MaxSecureTrojan.Malware.208760594.susgen
AVGWin32:Malware-gen
Cybereasonmalicious.748042
DeepInstinctMALICIOUS

How to remove Malware.AI.2006551034?

Malware.AI.2006551034 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment