Malware

About “Malware.AI.2551513326” infection

Malware Removal

The Malware.AI.2551513326 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2551513326 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk

How to determine Malware.AI.2551513326?


File Info:

name: DD217A73710DBCAF1250.mlw
path: /opt/CAPEv2/storage/binaries/aa924a6919fe3c59d10d5df940fddba5b8f6e0f4db93553bd85571904258446b
crc32: E8D69177
md5: dd217a73710dbcaf125083c5460c822b
sha1: c9c9143a17600d06dd79186afe4485237e3f9c85
sha256: aa924a6919fe3c59d10d5df940fddba5b8f6e0f4db93553bd85571904258446b
sha512: 4c49ef9588d37a3e311e3722d70f5b96147a5e53fb59d0fb49ebde980bca762ad461ec3d3b3cc1c0baf153ba494acbbe87e7b9b722fed78653c471de8a2e2927
ssdeep: 3072:L7DhdC6kzWypvaQ0FxyNTBf7jlWR8sbefe:LBlkZvaF4NTBzZWRFefe
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1F8B39E41F3E201F7EAF1053100EA626F973A63349764A9EBC74C2D529903AD5963D3F9
sha3_384: d09cfaec5749fdaa107faf802655d96fba120a021928edf36aca59849eddb5bf2c9186be3e64ba88d3332b3d3acfedbb
ep_bytes: 68ac00000068000000006868804100e8
timestamp: 2019-07-30 08:52:45

Version Info:

0: [No Data]

Malware.AI.2551513326 also known as:

BkavW32.Common.EF179204
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.dd217a73710dbcaf
SkyhighBehavesLike.Win32.RealProtectPE.cc
McAfeeRDN/Generic.dx
MalwarebytesMalware.AI.2551513326
SangforTrojan.Win32.Save.a
TrendMicro-HouseCallTROJ_GEN.R002H06K823
ClamAVWin.Trojan.Generic-10011119-0
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GoogleDetected
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZexaF.36802.guW@au97OP
Cylanceunsafe
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.2551513326?

Malware.AI.2551513326 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment