Malware

Malware.AI.2640057104 information

Malware Removal

The Malware.AI.2640057104 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2640057104 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.2640057104?


File Info:

name: B71E1F01409D1BB0E438.mlw
path: /opt/CAPEv2/storage/binaries/acaf584ac73996cc0716383887f82a03aababb723da6ded2709fc1c64a42f002
crc32: 5A279B60
md5: b71e1f01409d1bb0e4389606e4765357
sha1: 81e33609eb69d87213f2fe43450e246f4c7165bb
sha256: acaf584ac73996cc0716383887f82a03aababb723da6ded2709fc1c64a42f002
sha512: a751c29a39c7f88fd284d157847a8e597471796a9d26e9ef4c73a4b4cd42bbc9c50eb1e2094f188370d96cdbac3d1f7823bcb9e0bd4da7735a683d0d9ef6795a
ssdeep: 6144:g8vzZGd8XoBCAhUeNpZ6h62HaFC364YV6phWh7BXCzUspOpzxG0eMS:gi9+84BCE3p8HaIpYHfXCzUspOxSMS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14F64D05235C88F31FB63807A4A399E6BC024F0685B524ED7F7E80D2B55695C28633BE7
sha3_384: 2b75c3af92dd543682c3b9f4769757ae19328becf119eee94e11dd8aa3e7e5549837af19d4b22da8fb5b21ed91f9944c
ep_bytes: e887080000e978feffff8b4df464890d
timestamp: 2021-02-14 15:06:39

Version Info:

CompanyName: Adobe Systems Incorporated
FileDescription: Adobe Acrobat 32BitMAPIBroker
FileVersion: 21.1.20138.422477
LegalCopyright: Copyright 1984-2021 Adobe Systems Incorporated and its licensors. All rights reserved.
ProductName: Adobe Acrobat 32BitMAPIBroker
ProductVersion: 21.1.20138.422477
OriginalFilename: 32BitMAPIBroker.exe
Translation: 0x0409 0x04e4

Malware.AI.2640057104 also known as:

BkavW32.AIDetectMalware
LionicVirus.Win32.Senoval.n!c
MicroWorld-eScanGen:Variant.Lazy.386554
FireEyeGeneric.mg.b71e1f01409d1bb0
SkyhighBehavesLike.Win32.Trojan.fc
McAfeeRDN/Generic.dx
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005ab4bf1 )
AlibabaTrojan:Win32/Senoval.8337f9dd
K7GWTrojan ( 005ab4bf1 )
ArcabitTrojan.Lazy.D5E5FA
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Patched.NKM
CynetMalicious (score: 100)
ClamAVWin.Malware.Lazy-10008999-0
KasperskyVirus.Win32.Senoval.a
BitDefenderGen:Variant.Lazy.386554
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Patched-AWW [Trj]
TencentTrojan.Win32.Pathced_ya.16001052
EmsisoftGen:Variant.Lazy.386554 (B)
F-SecureTrojan.TR/Patched.Gen
DrWebWin32.Beetle.2
VIPREGen:Variant.Lazy.386554
TrendMicroTROJ_GEN.R002C0DJQ23
Trapminemalicious.high.ml.score
SophosW32/Patched-CE
AviraTR/Patched.Gen
Antiy-AVLTrojan/Win32.Patched
MicrosoftTrojan:Win32/Convagent.AJ!MTB
ZoneAlarmVirus.Win32.Senoval.a
GDataGen:Variant.Lazy.386554
VaristW32/Doina.AF.gen!Eldorado
AhnLab-V3Malware/Win.Generic.C5482840
VBA32BScope.Trojan.Meterpreter
ALYacGen:Variant.Lazy.386554
MAXmalware (ai score=88)
MalwarebytesMalware.AI.2640057104
TrendMicro-HouseCallTROJ_GEN.R002C0DJQ23
RisingTrojan.Generic@AI.100 (RDML:FVyT5wOCqDnyI3oyXRHMYw)
IkarusTrojan.Win32.Patched
FortinetW32/Patched.IP!tr
AVGWin32:Patched-AWW [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.2640057104?

Malware.AI.2640057104 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment