Malware

How to remove “Malware.AI.2051356706”?

Malware Removal

The Malware.AI.2051356706 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2051356706 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Removes Security and Maintenance icon from Start menu, Taskbar and notifications
  • Authenticode signature is invalid
  • CAPE detected the shellcode patterns malware family
  • Attempts to modify proxy settings
  • Deletes executed files from disk
  • Touches a file containing cookies, possibly for information gathering
  • Anomalous binary characteristics
  • Attempts to modify user notification settings
  • Uses suspicious command line tools or Windows utilities
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.2051356706?


File Info:

name: 3AF2D9E79BCF688DF85F.mlw
path: /opt/CAPEv2/storage/binaries/7702430d424d224cbb862427b0b04def910e3527aee1fad65edaec4021ece505
crc32: C66914AA
md5: 3af2d9e79bcf688df85f2067eb036c72
sha1: e64bf4ef8c47a9bcd8692db1bbf3d86582e60861
sha256: 7702430d424d224cbb862427b0b04def910e3527aee1fad65edaec4021ece505
sha512: 0dd793c572cffec7b5adca4cdef02a7090c314b48a693166a7023752a9e1314703f632593954b06e62793ede6c92b8713b5712ad6a0b75d338a7f0472ddf4c32
ssdeep: 12288:2pDlneaWWcvNTQm0R2dkQWV9XQ/JA4D5wktBaxI2ZlSAtBr:2hvclTQJHQW/Qf5wktYC2ZljB
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T13BC4E0527394C052F4A680705D3B87D9C939BE61CF01A5E7A3C87B4D2D327D9AFB0A1A
sha3_384: be6190fc76baac0c4d611107f8d5f98c495c803f88a3a90d4adee9926524c7829b20bec724076644cf367f35290194a1
ep_bytes: 6a606809124000e86e000000b981fa9c
timestamp: 2011-06-07 23:23:24

Version Info:

0: [No Data]

Malware.AI.2051356706 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Menti.4!c
AVGWin32:MalOb-IJ [Cryp]
DrWebTrojan.AVKill.7193
MicroWorld-eScanGen:Variant.FakeAlert.88
FireEyeGeneric.mg.3af2d9e79bcf688d
SkyhighBehavesLike.Win32.Generic.hc
McAfeeFakeAV-Rena.p
MalwarebytesMalware.AI.2051356706
ZillyaTrojan.FakeAV.Win32.107636
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0028a9fe1 )
AlibabaTrojan:Win32/ExpProc.d3ebfbf8
K7GWTrojan ( 0028a9fe1 )
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZedlaF.36802.Hu4@ay727Eji
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.QAY
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:MalOb-IJ [Cryp]
ClamAVWin.Trojan.Fakeav-99108
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.FakeAlert.88
NANO-AntivirusVirus.Win32.Gen.ccmw
TencentWin32.Trojan.Generic.Pqil
EmsisoftGen:Variant.FakeAlert.88 (B)
F-SecureTrojan.TR/FakeAV.alf.2
VIPREGen:Variant.FakeAlert.88
TrendMicroTROJ_FAKEAL.SMLA
Trapminemalicious.high.ml.score
SophosMal/FakeAV-MQ
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Menti.ecu
VaristW32/S-d7429e1b!Eldorado
AviraTR/FakeAV.alf.2
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.1000
MicrosoftRogue:Win32/FakeRean
XcitiumTrojWare.Win32.Kryptik.PMC@3ny5q8
ArcabitTrojan.FakeAlert.88
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.FakeAlert.88
GoogleDetected
AhnLab-V3Trojan/Win32.FakeAV.R7913
VBA32SScope.Trojan-Inject.0260
ALYacGen:Variant.FakeAlert.88
Cylanceunsafe
PandaTrj/Sirefef.E
TrendMicro-HouseCallTROJ_FAKEAL.SMLA
RisingMalware.Undefined!8.C (TFE:4:svWcH4Ush0E)
YandexTrojan.FakeRena.Gen!Pac.4
IkarusTrojan.Win32.FakeAV
FortinetW32/FakeAV.MQ!tr
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/FakeAlert

How to remove Malware.AI.2051356706?

Malware.AI.2051356706 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment