Malware

About “Malware.AI.2748758502” infection

Malware Removal

The Malware.AI.2748758502 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2748758502 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.2748758502?


File Info:

name: 29DFDDA7C52A841F8F2F.mlw
path: /opt/CAPEv2/storage/binaries/0610b00d33674b6e855fa0f20403d942eb05be4d3a57931488ee588b845527dd
crc32: EDFD524A
md5: 29dfdda7c52a841f8f2f15da6b7f9e20
sha1: ec315586e12de8c3fb8a87ed410d043a9c1a137d
sha256: 0610b00d33674b6e855fa0f20403d942eb05be4d3a57931488ee588b845527dd
sha512: a35970d5932ace4990a14b98ce3abf00b919edc0fe0a80e39f3c29e133c610e804f4e3fb6b4c7279dea79a0f014b18e79caa6803f50e811339be3f58d4ed0dd6
ssdeep: 3072:OCwKliQwigkvDAdLCLq5R3OWP5AoWogofO2u7daK:DwKnwn2dqLJRAoLOhUK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14BC302D4AF110D92F06595B6C9F0976603754E210D2B6F1383AD390BBAB3AC1EB1EF48
sha3_384: 5438f1081931d0471166f4620769307cfa1a5aa1562e3994e40448e464f4283fa8d581640e26b53cd69939de2394683d
ep_bytes: b84cfb49005064ff3500000000648925
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.2748758502 also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Generic.1!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.29dfdda7c52a841f
SkyhighBehavesLike.Win32.Worm.cc
McAfeeGenericRXAA-AA!29DFDDA7C52A
MalwarebytesMalware.AI.2748758502
SangforTrojan.Win32.Keygen.Vd40
K7AntiVirusUnwanted-Program ( 004d38111 )
K7GWUnwanted-Program ( 004d38111 )
CrowdStrikewin/grayware_confidence_100% (D)
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Keygen.AG potentially unsafe
APEXMalicious
TrendMicro-HouseCallCRCK_KEYGEN
ClamAVWin.Ransomware.Convagent-9856042-0
NANO-AntivirusTrojan.Win32.Keygen.bonnbr
GoogleDetected
ZillyaTrojan.Keygen.Win32.9216
TrendMicroCRCK_KEYGEN
Trapminemalicious.high.ml.score
SophosKeygen (PUA)
IkarusTrojan.Spy.Banker
VaristW32/Trojan.RXJI-8645
Antiy-AVLTrojan/Win32.Tiggre
Kingsoftmalware.kb.a.999
MicrosoftHackTool:Win32/Keygen
XcitiumMalware@#rp4tngt6rkdn
GDataWin32.Trojan.Agent.A63BRB
Cylanceunsafe
RisingPUA.Keygen!8.3EB (CLOUD)
YandexTrojan.GenAsa!Txs1A7fSpn0
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Malware_fam.NB
DeepInstinctMALICIOUS

How to remove Malware.AI.2748758502?

Malware.AI.2748758502 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment