Malware

What is “Malware.AI.2376312672”?

Malware Removal

The Malware.AI.2376312672 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2376312672 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Guard pages use detected – possible anti-debugging.
  • Dynamic (imported) function loading detected
  • Enumerates the modules from a process (may be used to locate base addresses in process injection)
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Malware.AI.2376312672?


File Info:

name: 2B0FF686E19A8CA6309B.mlw
path: /opt/CAPEv2/storage/binaries/93f5988c06603ba44b186d5dc68ff18d5770e22fd2822a1f6d3ec7a0bba118a2
crc32: 0850181D
md5: 2b0ff686e19a8ca6309bf4afb74da172
sha1: 31e0d30a21906392daed6133b49c38b6a7301961
sha256: 93f5988c06603ba44b186d5dc68ff18d5770e22fd2822a1f6d3ec7a0bba118a2
sha512: 492ce2e1aae20ce953cc6f6e7cb1544372151ffe40ddccd7dcab19dbb51ccff752d2e66309658b002565b879889b14b336af5e9e8d5332f0b40d6f0616dd634c
ssdeep: 96:8Xpg2v7odEaBI/fd8sEF1oiCRzGssJi11p1jEjL+MzNt:857TodEqI/l8si1VMzxso1hEG2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T119F1D76393E8C776D97A0B32CE6366811735E3458CA3AE6F59C441158DE32180BA3A63
sha3_384: 2e1eaf6b63140dadabf18bf0d78d05dfed12da35d477efda852aa1f690e4ae549076714f82651fc76f3e0330948f8476
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-06-27 02:05:50

Version Info:

Translation: 0x0000 0x04b0
FileDescription: @PromisDebug
FileVersion: 1.0.0.0
InternalName: PromisDebug.exe
LegalCopyright: Copyright © 2012
OriginalFilename: PromisDebug.exe
ProductName: @PromisDebug
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.2376312672 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanGen:Variant.Tedy.154416
FireEyeGen:Variant.Tedy.154416
ALYacGen:Variant.Tedy.154416
VIPREGen:Variant.Tedy.154416
BitDefenderGen:Variant.Tedy.154416
KasperskyVHO:Backdoor.MSIL.Phny.gen
Ad-AwareGen:Variant.Tedy.154416
EmsisoftGen:Variant.Tedy.154416 (B)
McAfee-GW-EditionArtemis
Trapminemalicious.moderate.ml.score
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Tedy.154416
CynetMalicious (score: 100)
McAfeeArtemis!2B0FF686E19A
MAXmalware (ai score=81)
MalwarebytesMalware.AI.2376312672
APEXMalicious
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove Malware.AI.2376312672?

Malware.AI.2376312672 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment