Malware

Malware.AI.2581249218 removal instruction

Malware Removal

The Malware.AI.2581249218 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2581249218 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.2581249218?


File Info:

name: 18D4CD64C9B1AA6DCF41.mlw
path: /opt/CAPEv2/storage/binaries/12cbe4edf85ba84fdf1d4e5c514da7a205e4b05369b5e9244d6b99b6821b5c41
crc32: 2E3AFDC9
md5: 18d4cd64c9b1aa6dcf4115b1ce08e350
sha1: 08e70886dd10c92c1af632381fba5cff8375ea1e
sha256: 12cbe4edf85ba84fdf1d4e5c514da7a205e4b05369b5e9244d6b99b6821b5c41
sha512: 69a92040e57ecbf7f268c992b236003586866668b33b68beabaf92d038d6d48f791cc3b2e969ab7740dbca999882f5b8fbae3ef966a2ff99503cdc094df64b42
ssdeep: 6144:bno7WPJ1OeSyWzZrkLDkOcWTAbz7lS79Krhiz4FTiSoNoR+kJDIX:bngwSxFYLDkOcWkU9KozEv4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1215423A6B76048FAC9B1D17049E389AC8EB1BCF11719875337C8AF4F3D86500B952D6B
sha3_384: 3f214aaa2af9924ceddedf9712659f76056ede2d2579f47f30f78c15a7bd10f2202488c0866476359e2a6f6e3b43a860
ep_bytes: 60be006047008dbe00b0f8ff57eb0b90
timestamp: 2011-09-11 18:12:22

Version Info:

FileVersion: 1.0.0.0
Comments: nfs8.Reg.Fix
FileDescription: nfs8.Reg.Fix
LegalCopyright: nfs8.Reg.Fix
Translation: 0x0804 0x04b0

Malware.AI.2581249218 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
ClamAVWin.Virus.Parite-6777121-0
SkyhighBehavesLike.Win32.BadFile.dc
McAfeeArtemis!18D4CD64C9B1
APEXMalicious
CynetMalicious (score: 100)
Trapminemalicious.moderate.ml.score
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.CSPWBI
GoogleDetected
XcitiumTrojWare.Win32.Hider.REXS@5364kt
VBA32Trojan.Pasta
MalwarebytesMalware.AI.2581249218
IkarusTrojan.Win32
DeepInstinctMALICIOUS

How to remove Malware.AI.2581249218?

Malware.AI.2581249218 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment