Malware

Malware.AI.26373734 malicious file

Malware Removal

The Malware.AI.26373734 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.26373734 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.26373734?


File Info:

name: BE65917B31DADC11F3AB.mlw
path: /opt/CAPEv2/storage/binaries/1c7e59a47efe12dba757d5469ef105c4e964c3c49106146d811376e2c3102185
crc32: E0C39E22
md5: be65917b31dadc11f3ab70506e7109dd
sha1: f8977843f10689bb28b5acedacb034f856c11447
sha256: 1c7e59a47efe12dba757d5469ef105c4e964c3c49106146d811376e2c3102185
sha512: 7931c05b397a7d3bba009b9998d1b7658278320b28d6d775ac98f5f453e322706f0377cc6aabe4ed97d1e66c9033ecb2d71e74cc1deada7245eeafc4b9a4a7e4
ssdeep: 49152:EMSnKhAyZy9MSnKhAyZyiMSnKhAyZy/MSnKhAyZyXU0Igt6WMSnKhAyZy0:xSKhA+rSKhA+6SKhA+fSKhA+8U0Rt6/f
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19BA55AA9160AEF75C1DC31F4CE30B1532AB45D4216529E3398BE3E5BB474A83EDC1A8D
sha3_384: bf1d661fe66b109eb4ae072afa79ef842fd7bd220adc4cc7632faa6360d291bf33efd19fc391cac1be4ecd0231818150
ep_bytes: ff250020400000000000000000000000
timestamp: 2016-03-07 11:22:21

Version Info:

Translation: 0x0000 0x04b0
FileDescription: Overwatch
FileVersion: 1.0.0.0
InternalName: Overwatch.exe
LegalCopyright: Copyright © 2016
OriginalFilename: Overwatch.exe
ProductName: Overwatch
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.26373734 also known as:

BkavW32.Common.6E282E9C
LionicTrojan.Win32.Surveyer.4!c
MicroWorld-eScanTrojan.GenericKD.68970604
FireEyeGeneric.mg.be65917b31dadc11
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
McAfeeArtemis!BE65917B31DA
MalwarebytesMalware.AI.26373734
ZillyaTrojan.Surveyer.Win32.4465
SangforTrojan.Msil.Surveyer.Vwti
K7AntiVirusTrojan ( 004ff8e21 )
BitDefenderTrojan.GenericKD.68970604
K7GWTrojan ( 004ff8e21 )
ArcabitTrojan.Generic.D41C686C
ESET-NOD32a variant of MSIL/Surveyer.EO
APEXMalicious
AlibabaTrojan:MSIL/Surveyer.ea559f29
VIPRETrojan.GenericKD.68970604
McAfee-GW-EditionArtemis
Trapminesuspicious.low.ml.score
EmsisoftTrojan.GenericKD.68970604 (B)
SentinelOneStatic AI – Suspicious PE
GoogleDetected
Antiy-AVLTrojan/MSIL.Surveyer
GDataTrojan.GenericKD.68970604
ALYacTrojan.GenericKD.68970604
MAXmalware (ai score=86)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H09I123
RisingTrojan.Surveyer!8.7C2 (CLOUD)
IkarusTrojan.MSIL.Surveyer
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.26373734?

Malware.AI.26373734 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment