Malware

Should I remove “Malware.AI.2615080063”?

Malware Removal

The Malware.AI.2615080063 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2615080063 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Sniffs keystrokes
  • Checks for the presence of known windows from debuggers and forensic tools

How to determine Malware.AI.2615080063?


File Info:

name: 050F2642B6B31665B346.mlw
path: /opt/CAPEv2/storage/binaries/8e8166b95b4d59d2f1e5ef9a77a01ec95ef70935617f0cc8597aab5281a19cd1
crc32: 694EA359
md5: 050f2642b6b31665b34686ff3719c84f
sha1: d7c519b91710fcb56c693ff5ee25c7e99955f882
sha256: 8e8166b95b4d59d2f1e5ef9a77a01ec95ef70935617f0cc8597aab5281a19cd1
sha512: b277b10504b21f9b94d919fe0bd3c5c11706d889906f8309b6c1399a77ea40a8c1db3420f1bcc2e25d681f83b3689ed0163c8c1cf4c77f3444e531f01a3d3bfd
ssdeep: 384:UietZlaNreBCwq9UhKpd+vgV3dhK+DEH7AmkUZ8G0Qjy0a:PXgvgVmV38GK
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11CF271D8BDE55CEAEA11223E95E3D226A63CF5D08B430B47B37475351B12D923BD820B
sha3_384: 87336eda987132c077f80b77ee57656df9da0de39da7ec85b6c77db60d89f8fda8a9e1cb003bf56b268338aebd258648
ep_bytes: 83ec1cc7042401000000ff1530714000
timestamp: 1970-01-04 19:01:20

Version Info:

0: [No Data]

Malware.AI.2615080063 also known as:

LionicTrojan.Win32.Dreidel.4!c
MicroWorld-eScanTrojan.GenericKD.38908759
FireEyeTrojan.GenericKD.38908759
ALYacTrojan.GenericKD.38908759
CylanceUnsafe
SangforTrojan.Win32.KeyLogger.gen
K7AntiVirusSpyware ( 004f03da1 )
AlibabaTrojanSpy:Win32/KeyLogger.271f333b
K7GWSpyware ( 004f03da1 )
Cybereasonmalicious.2b6b31
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.KeyLogger.PGH
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Spy.Win32.KeyLogger.gen
BitDefenderTrojan.GenericKD.38908759
NANO-AntivirusTrojan.Win32.KeyLogger.idnazp
AvastWin32:Trojan-gen
TencentWin32.Trojan-spy.Keylogger.Bxv
Ad-AwareTrojan.GenericKD.38908759
SophosMal/Generic-S
ComodoMalware@#6i3zgvfaekvc
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0GBJ22
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.38908759 (B)
AviraTR/Spy.KeyLogger.wahvc
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Ymacco.AA8E
ZoneAlarmHEUR:Trojan-Spy.Win32.KeyLogger.gen
GDataTrojan.GenericKD.38908759
CynetMalicious (score: 99)
McAfeeArtemis!050F2642B6B3
MAXmalware (ai score=87)
VBA32BScope.TrojanSpy.Keylogger
MalwarebytesMalware.AI.2615080063
TrendMicro-HouseCallTROJ_GEN.R002C0GBJ22
RisingSpyware.KeyLogger!8.12F (CLOUD)
IkarusTrojan-Spy.Agent
MaxSecureTrojan.Malware.11443257.susgen
FortinetW32/KeyLogger.PGH!tr.spy
BitDefenderThetaGen:NN.ZexaF.34232.c0Y@aSS29ii
AVGWin32:Trojan-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.2615080063?

Malware.AI.2615080063 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment