Malware

Malware.AI.2108737061 removal guide

Malware Removal

The Malware.AI.2108737061 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2108737061 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • At least one process apparently crashed during execution
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Malware.AI.2108737061?


File Info:

name: 3D0C9EB035CF7828339E.mlw
path: /opt/CAPEv2/storage/binaries/aa10f9a65cd68611aceaaac9c1ace6d742777c59fdae03715950242802dbd734
crc32: 9F71B77C
md5: 3d0c9eb035cf7828339e44dbd14b8864
sha1: fcb1d3760a336cd050f001245c78c6443b5cdd00
sha256: aa10f9a65cd68611aceaaac9c1ace6d742777c59fdae03715950242802dbd734
sha512: 0df917592d43130b404ca97b2d503d1b82fddcdc74ed445e1fdbcc2322365bcba30a4f5a1eede8d00b813aa1bd91579340abe6420d3331d509cd78fd9896220c
ssdeep: 6144:Tg7vUHZngn3RTdllR6O5YEzHnmumjjWcdt8QsPNs2TI:Tk8HZnghTdB6AY6HVmjXd6/PNlI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B275BF13A2D540BBF2E7113015B71B359AFEFE0296299A8BA370FE6E5D71240DD1930E
sha3_384: f5c6d85d62bb578e72528796285b5aef0ea8b109c593cbea5139dbadc61fe9e818d554e7278ba883c675549339a006a6
ep_bytes: 558bec6aff68f8c855006888c2540064
timestamp: 2006-02-02 02:40:47

Version Info:

Comments:
CompanyName: Sysinternals - www.sysinternals.com
FileDescription: Rootkit detection utility
FileVersion: 1.70
InternalName:
LegalCopyright: Copyright (C) 2005-2006 Bryce Cogswell and Mark Russinovich
LegalTrademarks:
OriginalFilename:
PrivateBuild:
ProductName: Sysinternals Rootkitrevealer
ProductVersion: 1.70
SpecialBuild:
Translation: 0x0409 0x04b0

Malware.AI.2108737061 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
FireEyeGeneric.mg.3d0c9eb035cf7828
CAT-QuickHealTrojan.Swisyn.OD5
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Swisyn.R.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Swisyn-6858792-0
SUPERAntiSpywareTrojan.Agent/Gen-Swisyn
AvastWin32:Malware-gen
ZillyaTrojan.GenericKD.Win32.76558
McAfee-GW-EditionBehavesLike.Win32.Dropper.tz
SophosML/PE-A
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.14A82VQ
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeArtemis!3D0C9EB035CF
MalwarebytesMalware.AI.2108737061
TrendMicro-HouseCallTROJ_GEN.R002H0CKO21
RisingTrojan.Generic@ML.100 (RDML:Gcbm/y1a8pL0n2cQPl3exg)
YandexTrojan.Siggen!Sy2E0LNPRsg
IkarusTrojan.Win32.Scar
FortinetW32/Swisyn.R!tr
AVGWin32:Malware-gen

How to remove Malware.AI.2108737061?

Malware.AI.2108737061 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment