Malware

Should I remove “Malware.AI.2309250130”?

Malware Removal

The Malware.AI.2309250130 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2309250130 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.2309250130?


File Info:

name: A841925DC645032D4E8B.mlw
path: /opt/CAPEv2/storage/binaries/86eaaf673c45c47274ba75dfb0553c44d925cd3412ec4c63c06620925cf8c5a1
crc32: 97534465
md5: a841925dc645032d4e8b19112bb924bc
sha1: a6c04d79d2719a5001f161e3a515ba468aeea99c
sha256: 86eaaf673c45c47274ba75dfb0553c44d925cd3412ec4c63c06620925cf8c5a1
sha512: caff0c3ba6ab6b833e166f4f51528e28a7dad02e001835bb392b7a6f149a80f9e3a1ef75330678337eb9304f2679db6e031e93079b3ff08cb3a3c20f71be1675
ssdeep: 12288:6XVa5N7wKO/3zfpvwsQS5TAS0spcPUEtAdd:AXAsaftAdd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T127B48C2418F91FAED52085B50FF0942BA7F08466A41DDEA5DE02DE5743CAC98BF9383D
sha3_384: f4573582a9653d6145c6066c18561cea449b940907d9ea92574906e8bd1e1e8e0b7f3944703a8cec50bab15607aa6eea
ep_bytes: 60be002050008dbe00f0efff5783cdff
timestamp: 2012-06-13 11:50:35

Version Info:

Translation: 0x0409 0x04b0
Comments: Colti bava rotaie
CompanyName: nomini vibri
FileDescription: Op pagano hs viso
LegalCopyright: hv sudori cofano 1990
LegalTrademarks: aduli ronda
ProductName: pz
FileVersion: 8.08.0004
ProductVersion: 8.08.0004
InternalName: vermi
OriginalFilename: vermi.exe

Malware.AI.2309250130 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.GenericML.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Trojan.Heur.Fm0@!tL1bCaG
FireEyeGeneric.mg.a841925dc645032d
McAfeeGenericRXAA-FA!A841925DC645
CylanceUnsafe
VIPREGen:Trojan.Heur.Fm0@!tL1bCaG
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.A7FB1CF91C
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002C0WJ522
Paloaltogeneric.ml
KasperskyUDS:Trojan.Win32.GenericML.xnet
BitDefenderGen:Trojan.Heur.Fm0@!tL1bCaG
CynetMalicious (score: 100)
AvastWin32:Malware-gen
Ad-AwareGen:Trojan.Heur.Fm0@!tL1bCaG
TACHYONTrojan/W32.Agent_Packed.512512.B
EmsisoftGen:Trojan.Heur.Fm0@!tL1bCaG (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
TrendMicroTROJ_GEN.R002C0WJ522
McAfee-GW-EditionArtemis
SentinelOneStatic AI – Malicious PE
Trapminemalicious.high.ml.score
SophosMal/Generic-S
APEXMalicious
AviraHEUR/AGEN.1251230
Antiy-AVLTrojan/Generic.ASMalwS.82BA
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Trojan.Heur.Fm0@!tL1bCaG
AhnLab-V3Trojan/Win.VBKrypt.R512688
ALYacGen:Trojan.Heur.Fm0@!tL1bCaG
MAXmalware (ai score=88)
MalwarebytesMalware.AI.2309250130
RisingTrojan.Generic!8.C3 (CLOUD)
FortinetW32/ULPM.16C0!tr
AVGWin32:Malware-gen
Cybereasonmalicious.dc6450

How to remove Malware.AI.2309250130?

Malware.AI.2309250130 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment