Malware

Malware.AI.2599666060 removal guide

Malware Removal

The Malware.AI.2599666060 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2599666060 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Attempts to connect to a dead IP:Port (5 unique times)
  • A process created a hidden window
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

iplogger.com
apps.identrust.com
crl.identrust.com
edgedl.me.gvt1.com

How to determine Malware.AI.2599666060?


File Info:

crc32: 26F60AC5
md5: c6fb458acf3b734fc0b4a19365e48579
name: C6FB458ACF3B734FC0B4A19365E48579.mlw
sha1: c11b1b4195ed57707ff0bc5844dc76371670777f
sha256: ac81667cad2eec9bc37e7a73107e32518d46c8b66bf4a441d3db89fad1170b5b
sha512: 2e77f0d276ca2ad8f9eab0ca8994f665f03d8f50949e3099d6a567b8f38204d9b10e757d05053d133dbc34a6baacdaa12168f53c1decb15722deeec726c1ca3a
ssdeep: 6144:OCYZBGNLOIALuAAyyWq0UuH5LhocNxKKoWR933YNW:O0NLOIALuASWq0UuZd33oW7r
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Copyrightxa9 1995-2018 ve reached the end
InternalName: Checkers
FileVersion: 1.00
CompanyName: nominative
LegalTrademarks: reached the end
ProductName: nominative
ProductVersion: 1.00
FileDescription: A term applied to the educated Irishmen who in the Middle Ages
OriginalFilename: Checkers.exe

Malware.AI.2599666060 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053401d1 )
CynetMalicious (score: 99)
ALYacGen:Variant.Ransom.Shade.18
CylanceUnsafe
ZillyaTrojan.Shade.Win32.752
SangforTrojan.Win32.Injector.DYNP
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 0053401d1 )
Cybereasonmalicious.acf3b7
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DYNP
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Shade.osq
BitDefenderGen:Variant.Ransom.Shade.18
NANO-AntivirusTrojan.Win32.RelLoader.fdybnj
MicroWorld-eScanGen:Variant.Ransom.Shade.18
TencentWin32.Trojan.Inject.Auto
Ad-AwareGen:Variant.Ransom.Shade.18
SophosML/PE-A
ComodoMalware@#1rl54eco8dyh8
BitDefenderThetaGen:NN.ZevbaF.34758.xq0@a4XhRFmi
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.c6fb458acf3b734f
EmsisoftGen:Variant.Ransom.Shade.18 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cgpuw
WebrootW32.Adware.Gen
AviraTR/AD.RelLoader.lfdkv
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.268C3C0
MicrosoftTrojan:Win32/Occamy.CAC
AegisLabTrojan.Win32.Shade.j!c
GDataGen:Variant.Ransom.Shade.18
McAfeeArtemis!C6FB458ACF3B
MAXmalware (ai score=100)
VBA32TrojanRansom.Shade
MalwarebytesMalware.AI.2599666060
PandaTrj/CI.A
YandexTrojan.Shade!hbn/Qt9sPuA
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.DYNP!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.2599666060?

Malware.AI.2599666060 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment