Malware

Malware.AI.2614798893 removal tips

Malware Removal

The Malware.AI.2614798893 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2614798893 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Manipulates data from or to the Recycle Bin
  • Authenticode signature is invalid
  • Harvests cookies for information gathering
  • Anomalous binary characteristics

How to determine Malware.AI.2614798893?


File Info:

name: 29B91AE79DEA7FEE283E.mlw
path: /opt/CAPEv2/storage/binaries/71e0f7a1c3b2c64402f6ec51f732da985e152e6478a8c70f3aa52ee6be6d65be
crc32: B4D999DF
md5: 29b91ae79dea7fee283e811f2a6f48ba
sha1: 64495999705d02a663ef695751678eeafe4c5746
sha256: 71e0f7a1c3b2c64402f6ec51f732da985e152e6478a8c70f3aa52ee6be6d65be
sha512: e4206b043311a0677207c95ab2b58807c1ffdd47fc1fb6242eba55da5a213ed32954ddefe642538a759f8ab0807e62d61732958213eec256c048a5c43a34c067
ssdeep: 1536:UFEL0c3++wG5NlKOln9N7oKsMmuB2IMokC+0FfHYTo/XLgLZ3Xo81Ma:UFUxlnjmDXokC+GfHYToPLgLZo81M
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15BC38C25B5D1C0B6D056147028BAC6721A7EFC3246B9C54B7BC97B2E1EB13C09A3B763
sha3_384: 1706b5fe700eb03f93682aba5a51e47ab16648bbde037edf71d1535b20eda6103792915248c8eead2e30e41549635668
ep_bytes: 558bec6aff6800f141006838b0410064
timestamp: 2019-06-09 15:36:23

Version Info:

0: [No Data]

Malware.AI.2614798893 also known as:

LionicVirus.Win32.Triusor.n!c
MicroWorld-eScanWin32.Triusor.A
FireEyeGeneric.mg.29b91ae79dea7fee
ALYacWin32.Triusor.A
CylanceUnsafe
Sangfor[ARMADILLO V1.71]
K7AntiVirusTrojan ( 004f12f91 )
Alibabavirus:Win32/InfectPE.ali2000007
K7GWTrojan ( 004f12f91 )
Cybereasonmalicious.79dea7
CyrenW32/Resur.D.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Resur.I
APEXMalicious
Paloaltogeneric.ml
BitDefenderWin32.Triusor.A
NANO-AntivirusVirus.Win32.Infector.eazaig
AvastWin32:Malware-gen
Ad-AwareWin32.Triusor.A
SophosMal/Generic-S
ComodoTrojWare.Win32.Nimnul.A@5waoem
F-SecureHeuristic.HEUR/AGEN.1240750
DrWebWin32.EquationKiller.1
TrendMicroVirus.Win32.RESUR.A
McAfee-GW-EditionBehavesLike.Win32.Triusor.ch
EmsisoftWin32.Triusor.A (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Triusor.A
AviraHEUR/AGEN.1240750
ArcabitWin32.Triusor.A
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
McAfeeW32/Triusor.A
MAXmalware (ai score=81)
VBA32Virus.Win32.Triusor
MalwarebytesMalware.AI.2614798893
TrendMicro-HouseCallVirus.Win32.RESUR.A
RisingVirus.Resur!1.B42C (CLASSIC)
IkarusVirus.Win32.Resur
FortinetW32/Agent.FN
BitDefenderThetaAI:FileInfector.AD9B3E700F
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.2614798893?

Malware.AI.2614798893 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment