Malware

Should I remove “Malware.AI.2602338203”?

Malware Removal

The Malware.AI.2602338203 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2602338203 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.2602338203?


File Info:

name: 7D90893C8624D85E0C8B.mlw
path: /opt/CAPEv2/storage/binaries/cca1dbd4aee53d17b51b0969323b402cd0d0943cba6f861a3f4945e8da18173a
crc32: 6BE798E7
md5: 7d90893c8624d85e0c8baccaead2a6b3
sha1: 5b26ac8f3587f5f76c62584ec10823c0d4528f4d
sha256: cca1dbd4aee53d17b51b0969323b402cd0d0943cba6f861a3f4945e8da18173a
sha512: 2f22a2384573278be23511e5429b73059616cfbb4062b23ae4df1ece550338657509773852336523ed002a76a9ea5800a35c6035a52d09f3f597f9ec973ec662
ssdeep: 24576:6Y60fnbZJoFMWTcs4gC9ixi4EgItk2I/xclM7j56VU9MqjeMQHkDqlPACuQ5p3hy:64foCYi94inkpWlQj5IU9MXMQED
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T144C52A136A8B1D75CDC23BF461CB633E9734EE31CA2A8FBBE609C53559532C4681A712
sha3_384: 13d757664e564d804f1b2dc7c402aa6a5eefbe6a1aaae6951b96a1eec8d154300456d8457694202f701be61c7b9f7d10
ep_bytes: 83ec1cc7042401000000ff1508335600
timestamp: 2022-06-16 07:54:33

Version Info:

0: [No Data]

Malware.AI.2602338203 also known as:

LionicTrojan.Win32.Stealer.l!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Jaik.81031
FireEyeGen:Variant.Jaik.81031
McAfeeArtemis!7D90893C8624
CylanceUnsafe
SangforTrojan.Win32.Stealer.gen
K7AntiVirusTrojan ( 00593a4b1 )
AlibabaTrojanSpy:Win32/Stealer.8dda2ed3
K7GWTrojan ( 00593a4b1 )
Cybereasonmalicious.f3587f
BitDefenderThetaGen:NN.ZexaF.34742.K!Z@a4HFTl
CyrenW32/Kryptik.GTB.gen!Eldorado
ESET-NOD32a variant of Win32/Kryptik.HPFH
TrendMicro-HouseCallTROJ_GEN.R002C0WFJ22
Paloaltogeneric.ml
ClamAVWin.Spyware.Generic-9952313-0
KasperskyHEUR:Trojan-Spy.Win32.Stealer.gen
BitDefenderGen:Variant.Jaik.81031
AvastWin32:Trojan-gen
TencentTrojan-Psw.Win32.Reline.16000435
Ad-AwareGen:Variant.Jaik.81031
EmsisoftGen:Variant.Jaik.81031 (B)
TrendMicroTROJ_GEN.R002C0WFJ22
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
AviraTR/Crypt.Agent.xnfrb
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Jaik.81031
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.R497196
ALYacGen:Variant.Jaik.81031
MalwarebytesMalware.AI.2602338203
RisingSpyware.Convagent!8.12330 (CLOUD)
MAXmalware (ai score=83)
FortinetW32/RedLineStealer.A!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.2602338203?

Malware.AI.2602338203 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment