Malware

Malware.AI.2337557892 removal

Malware Removal

The Malware.AI.2337557892 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2337557892 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.2337557892?


File Info:

name: 6D12BDC652BF7BF74E98.mlw
path: /opt/CAPEv2/storage/binaries/15d4150d33d2548a61b242ebea693a26256738ce91e9a1a9be8a2e965692f0b5
crc32: B5EA0832
md5: 6d12bdc652bf7bf74e98f7b15760cb0e
sha1: a46386f6c30cb0292b76dd2eb03d455fdccb3eb6
sha256: 15d4150d33d2548a61b242ebea693a26256738ce91e9a1a9be8a2e965692f0b5
sha512: 5d64bb6d22f975e4c3e7785870f4f5eae939754ec579a886c0df90fa48a18336bd9e4d18f211305af55ff16c5e385e0e4f18f06da6510e341edf06c94d0de73f
ssdeep: 6144:IUKuDoewRjMSpgkdJhpbRqk5Ngj8BX96R4XOFAi3wOqdHscHu6xwSXDjWHD:v5wRjtFJfAeEY9GAROaXHu6KSTS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1296422C8E5F77BB0DF059B31164B596D8864FF2E10C00B2782942E7B68B7A475F20E69
sha3_384: e1952135f147ba1e36fe60b94d155746ba73d37818122580cf04fc0ef43adba474709464bd915c3af9400cae9256c235
ep_bytes: 60e80000000058055a0b00008b3003f0
timestamp: 2020-07-17 10:53:50

Version Info:

FileDescription:
FileVersion: 1.1.33.02
InternalName:
LegalCopyright:
OriginalFilename:
ProductName:
ProductVersion: 1.1.33.02
Translation: 0x0409 0x04b0

Malware.AI.2337557892 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.70513388
ClamAVWin.Malware.Generic-9857035-0
FireEyeGeneric.mg.6d12bdc652bf7bf7
SkyhighBehavesLike.Win32.Generic.fc
McAfeeRDN/Generic.grp
MalwarebytesMalware.AI.2337557892
SangforTrojan.Win32.Agent.V4vu
Cybereasonmalicious.6c30cb
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKD.70513388
EmsisoftTrojan.GenericKD.70513388 (B)
VIPRETrojan.GenericKD.70513388
Trapminemalicious.moderate.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GoogleDetected
Antiy-AVLTrojan/Win32.SGeneric
MicrosoftPUA:Win32/Presenoker
ArcabitTrojan.Generic.D433F2EC
GDataTrojan.GenericKD.70513388
VBA32BScope.Trojan.Agent
ALYacTrojan.GenericKD.70513388
MAXmalware (ai score=86)
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H06KM23
YandexTrojan.GenAsa!hGUCOkJiT70
IkarusBackdoor.Win32.Vercuser
MaxSecureTrojan.Malware.300983.susgen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.2337557892?

Malware.AI.2337557892 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment