Malware

Malware.AI.2636208877 (file analysis)

Malware Removal

The Malware.AI.2636208877 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2636208877 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.2636208877?


File Info:

name: 3F61D40E83B4C627CA96.mlw
path: /opt/CAPEv2/storage/binaries/3d66f8eef51cdcd4b43b8e1b887c947934bc157e1d65827ec194f5ddd2c19918
crc32: B29F932F
md5: 3f61d40e83b4c627ca960a70edcda6c5
sha1: 04a20a559779532aca516092d8cb393f67e442f8
sha256: 3d66f8eef51cdcd4b43b8e1b887c947934bc157e1d65827ec194f5ddd2c19918
sha512: 401631d0a4b5a2c9a2ee80b21ff914df171bb73c9a860b77c5b7e9dbeaf2c7fb8bb7581416ce13feab3b686a1caff78005b6ef3624a328de413e079d36ca61a8
ssdeep: 1536:SuL0nq4dkv6qCa2zVKpWcXhAFL+dA8ZYo0cIWIPC86z6S7NyAtI/kE:S40nqwa+BlIp901nKumcAtIJ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T19CE34A29EA57C8F3DC8B007059DAE1AFCBE1F461EA52CE83DB981C1AC853953751C792
sha3_384: 848e757c7090e11689c7064b9f6ffacb99cfecec721ce0ea357d88bfe937759c98c1cf61beb845f1a12c9f62d3dae8f0
ep_bytes: 5589e583ec18c7042401000000ff1544
timestamp: 2011-04-26 14:36:59

Version Info:

0: [No Data]

Malware.AI.2636208877 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
SkyhighBehavesLike.Win32.Generic.cm
MalwarebytesMalware.AI.2636208877
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderThetaGen:NN.ZexaF.36792.jqW@aqXQPGm
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
APEXMalicious
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
Antiy-AVLVirus/Win32.Expiro.imp
Kingsoftmalware.kb.a.929
XcitiumPacked.Win32.MUPX.Gen@24tbus
VaristW32/Virtumonde!Generic
McAfeeGenericRXSS-MM!3F61D40E83B4
Cylanceunsafe
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
Cybereasonmalicious.597795
DeepInstinctMALICIOUS

How to remove Malware.AI.2636208877?

Malware.AI.2636208877 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment