Malware

Malware.AI.2418082301 removal instruction

Malware Removal

The Malware.AI.2418082301 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2418082301 virus can do?

  • Anomalous .NET characteristics
  • Anomalous binary characteristics

How to determine Malware.AI.2418082301?


File Info:

name: C138CB29C9D124BF1EBA.mlw
path: /opt/CAPEv2/storage/binaries/52dc5741882df4d11d8b4b2bb3ae60ebee6f6baac7220cc26bc41076f80b7efa
crc32: 73D6550A
md5: c138cb29c9d124bf1ebaaabcad47a4e0
sha1: ccb5a98a2c43969505cdb15b991ae8ffe5fe1480
sha256: 52dc5741882df4d11d8b4b2bb3ae60ebee6f6baac7220cc26bc41076f80b7efa
sha512: 0d68b198fcaa922e617346316575e00e703319c32467b2200dcb1c80199604bce88e91758479413d5960203b111fbaadd5d02129f7dd0dc29510439bd6f0e89a
ssdeep: 96:lMuzbEdYh4C/yjvJZkA3fO792+ab3CrXT2vT4NgRm6Z8TWIcTIoDK4WwOgzNt:lMIEWh4CbAP492+A3MjuTy7TWImA4Wu
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T134F1D701B3FC8219F5FE4F7928BA67005675FA934E13C36F5C85416A2D32710CAA2BB2
sha3_384: 13afa0f2b417d9e0e6b803fc02b80659857992954664b0aa20a0d07497598f3e8153ae98b046131fd00ee61b1e4c6593
ep_bytes: 4d5a90000300000004000000ffff0000
timestamp: 2021-11-21 10:09:24

Version Info:

Translation: 0x0000 0x04b0
Comments: Shell Infrastructure Host
FileDescription: Shell Infrastructure Host
FileVersion: 10.0.19041.746
InternalName: 3-watchdog.exe
LegalCopyright: © Microsoft Corporation. All Rights Reserved.
OriginalFilename: 3-watchdog.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 10.0.19041.746
Assembly Version: 0.0.0.0

Malware.AI.2418082301 also known as:

LionicTrojan.MSIL.Miner.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.38093528
FireEyeGeneric.mg.c138cb29c9d124bf
McAfeeArtemis!C138CB29C9D1
K7AntiVirusTrojan ( 0057f9af1 )
AlibabaTrojan:MSIL/Miner.a1570a25
K7GWTrojan ( 0057f9af1 )
CyrenW64/MSIL_Coinminer.C.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/CoinMiner.CGV
TrendMicro-HouseCallTROJ_GEN.R002C0WKN21
Paloaltogeneric.ml
KasperskyHEUR:Trojan.MSIL.Miner.gen
BitDefenderTrojan.GenericKD.38093528
AvastWin64:CoinminerX-gen [Trj]
TencentWin32.Trojan.Coinminer.Suxc
Ad-AwareTrojan.GenericKD.38093528
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0WKN21
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.38093528 (B)
IkarusTrojan.Win32.CoinMiner
GDataTrojan.GenericKD.38093528
eGambitUnsafe.AI_Score_82%
AviraHEUR/AGEN.1143065
GridinsoftRansom.Win64.Sabsik.sa
ArcabitTrojan.Generic.D24542D8
MicrosoftTrojan:Script/Phonzy.A!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4705070
VBA32Trojan.MSIL.Miner
ALYacTrojan.GenericKD.38093528
MAXmalware (ai score=88)
MalwarebytesMalware.AI.2418082301
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/CoinMiner.CGV!tr
AVGWin64:CoinminerX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.2418082301?

Malware.AI.2418082301 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment