Malware

Malware.AI.2603451591 information

Malware Removal

The Malware.AI.2603451591 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2603451591 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • Network activity detected but not expressed in API logs
  • Checks for the presence of known devices from debuggers and forensic tools
  • Detects VirtualBox through the presence of a device
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.2603451591?


File Info:

crc32: 956D1532
md5: 2b401ba1290e1b672b04bb4a4b0bdb75
name: 2B401BA1290E1B672B04BB4A4B0BDB75.mlw
sha1: c7d0e238566d21b76511a2035384e019bfe1428f
sha256: 4e06718934006329edd1a9362a0cb99787c9031ad14327876b984ffc3dc45dd1
sha512: f13ddd9c97e795798e7107b14835883ab9abb38f25b401d9ee7da0cdae54fb234cb8636bb8431cf9cdc37d45542703cfd56bc0a1433d6f4be487d1c2c0b42d39
ssdeep: 12288:6CVVredjVwXMo9JYys3h46Gq3BMAPQLYhbRZ:2yXMeJYluPq3BhPQMhbX
type: MS-DOS executable, MZ for MS-DOS

Version Info:

LegalCopyright: Copyright xa9 2000 Gerald Combs , Gilbert Ramirez and others
InternalName: Mergecap 0.99.6a
FileVersion: 0.99.6a
CompanyName: The Wireshark developer community
ProductName: Mergecap
ProductVersion: 0.99.6a
FileDescription: Mergecap
OriginalFilename: Mergecap.exe
Translation: 0x0409 0x04b0

Malware.AI.2603451591 also known as:

MicroWorld-eScanTrojan.GenericKD.35009768
FireEyeGeneric.mg.2b401ba1290e1b67
McAfeeArtemis!2B401BA1290E
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.j!c
SangforTrojan.Win32.Malware.gen
K7AntiVirusTrojan ( 004fb1011 )
BitDefenderTrojan.GenericKD.35009768
K7GWTrojan ( 004fb1011 )
Cybereasonmalicious.1290e1
BitDefenderThetaGen:NN.ZexaF.34590.Au3@a4or!aac
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.NHT
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Ransom.Win32.Generic
NANO-AntivirusTrojan.Win32.Encoder.evdkrd
RisingMalware.Undefined!8.C (CLOUD)
Ad-AwareTrojan.GenericKD.35009768
SophosMal/Generic-S
ComodoMalware@#2th63qkpoxm3q
F-SecureHeuristic.HEUR/AGEN.1128039
DrWebTrojan.Encoder.567
ZillyaTrojan.Filecoder.Win32.6939
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.35009768 (B)
IkarusTrojan.SuspectCRC
AviraHEUR/AGEN.1128039
MAXmalware (ai score=98)
Antiy-AVLTrojan[Ransom]/Win32.AGeneric
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.Generic.D21634E8
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataTrojan.GenericKD.35009768
CynetMalicious (score: 100)
Acronissuspicious
VBA32BScope.Trojan.APosT
ALYacTrojan.GenericKD.35009768
MalwarebytesMalware.AI.2603451591
PandaTrj/CI.A
TencentWin32.Trojan.Filecoder.Hroy
YandexTrojan.GenAsa!Wm6Gdi9Xp2o
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_92%
FortinetW32/Generic!tr
WebrootW32.Trojan.Gen
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.793

How to remove Malware.AI.2603451591?

Malware.AI.2603451591 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment