Malware

Malware.AI.2136494208 (file analysis)

Malware Removal

The Malware.AI.2136494208 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2136494208 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Malware.AI.2136494208?


File Info:

name: A35C2CB7C8FDBB7138BF.mlw
path: /opt/CAPEv2/storage/binaries/01b2a2c98df5b1231f9d77c32bb7c4f7ef126024e200906133d649f6685ffae3
crc32: D51F6680
md5: a35c2cb7c8fdbb7138bf98e371d9500e
sha1: 407cefe6642ae4ee83dbdf3c5b6555c5bdbeb147
sha256: 01b2a2c98df5b1231f9d77c32bb7c4f7ef126024e200906133d649f6685ffae3
sha512: e16182bbb86856b232e2c3a31f9303f90dcc89b6b2a67455b22b636c6606fca7c3e78697ff20753e2968ce131c4810f5c2d623ab82d7ee6e6ba2dec4ebfb6e03
ssdeep: 1536:aE9i7L7wGjthNFJXw8bz/Hoa15Gx0jkb6FgqR2GkR:aMWL7djtXFxD/HoaGx0jk+uqR2GkR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T152832A00E6018569E0D250F5627A9B3BAD28AF331354E5D3F7D03D6A5EB86E3B63015B
sha3_384: 9d73d718263928864a3a2189841583ac909c1c37f5a881e8a7387c4a06c6d36dc91ab1ac795dcf1b0ccc65c4e42fc8d8
ep_bytes: ec8b4850894df86a4068003000008b55
timestamp: 2006-04-13 19:55:27

Version Info:

0: [No Data]

Malware.AI.2136494208 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Generic.liab
MicroWorld-eScanGen:Variant.Zbot.244
ALYacGen:Variant.Zbot.244
MalwarebytesMalware.AI.2136494208
VIPREGen:Variant.Zbot.244
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Wigon.b719a2c7
K7GWTrojan ( 004567271 )
K7AntiVirusTrojan ( 004567271 )
BaiduWin32.Trojan.Wigon.a
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Wigon.PI
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Zbot.244
AvastSf:ShellCode-AU [Trj]
TencentWin32.Trojan.Patched.Lzfl
SophosML/PE-A
DrWebTrojan.DownLoad.64914
ZillyaTrojan.Wigon.Win32.8732
McAfee-GW-EditionGenericRXRN-OL!A35C2CB7C8FD
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.a35c2cb7c8fdbb71
EmsisoftGen:Variant.Zbot.244 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Ren.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zbot.244
GDataGen:Variant.Zbot.244
GoogleDetected
Acronissuspicious
McAfeeGenericRXRN-OL!A35C2CB7C8FD
MAXmalware (ai score=100)
VBA32Trojan.Cutwail
Cylanceunsafe
RisingTrojan.Generic@AI.100 (RDML:rmi50ILKUrlrdS0LqA2REg)
YandexTrojan.Wigon!NTnkuhYpo/0
IkarusGen.Trojan
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Wigon.PI!tr
BitDefenderThetaAI:Packer.497D165B1E
AVGSf:ShellCode-AU [Trj]
PandaTrj/CI.A

How to remove Malware.AI.2136494208?

Malware.AI.2136494208 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment