Malware

Malware.AI.2752797740 removal

Malware Removal

The Malware.AI.2752797740 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2752797740 virus can do?

  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.2752797740?


File Info:

name: 96BE66C698B795FDDB60.mlw
path: /opt/CAPEv2/storage/binaries/f37708b3d817e64796f92ef7c37dc59c9495a0861ef1e149013b5f02869caa5b
crc32: A4F1C0E8
md5: 96be66c698b795fddb604aecac852d32
sha1: 5385956042b4329f747620dff0daa9f0d8d7862b
sha256: f37708b3d817e64796f92ef7c37dc59c9495a0861ef1e149013b5f02869caa5b
sha512: 6fa90c81081d04c56b8303fbd4c07347e51a8fa21c12c0852e17171f4c15ce8bbccd9ee20f34ae3150fb5c3082a824af1aeaeca6decae86a27a78c661310dcf3
ssdeep: 12288:AnNhuBoY8SorxgmA+nlvVlqCxHIusOkXKan8PF997emvWlPMbg:APatCg7EP/HSXKan8PF9t1bg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5D42383FD599776FE2906B6F0178A962A237CB6DDB0321970D17E4E0C3F022C976994
sha3_384: ff3cfe10405ccc917ff514bfe685bdf2b228c058957440fb8eca454c8d5bf27963554ca37b09e20d938fb20f05e8a2da
ep_bytes: 60be001047008dbe0000f9ff57eb0b90
timestamp: 2008-06-12 08:51:05

Version Info:

FileVersion: 99.8.1.0
Comments: B?
FileDescription: S)b+ ][]!
LegalCopyright: g 5>
Translation: 0x1407 0x04b0

Malware.AI.2752797740 also known as:

BkavW32.OtranQKA.Fam.Worm
LionicTrojan.Win32.Autoit.lAjY
tehtrisGeneric.Malware
MicroWorld-eScanGen:Trojan.Heur.AutoIT.4
FireEyeGeneric.mg.96be66c698b795fd
ALYacGen:Trojan.Heur.AutoIT.4
CylanceUnsafe
VIPREGen:Trojan.Heur.AutoIT.4
SangforTrojan.Win32.Autoit.Vbqh
K7AntiVirusTrojan ( 004ba4ae1 )
AlibabaWorm:AutoIt/Tifaut.f5a46411
K7GWTrojan ( 004ba4ae1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/AutoIt.M.gen!Eldorado
SymantecW32.Harakit
Elasticmalicious (moderate confidence)
ESET-NOD32multiple detections
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Autoit-142
BitDefenderGen:Trojan.Heur.AutoIT.4
NANO-AntivirusTrojan.Script.AutoIt.flxjdb
SUPERAntiSpywareTrojan.Agent/Gen-PlusX
AvastWin32:Malware-gen
Ad-AwareGen:Trojan.Heur.AutoIT.4
EmsisoftGen:Trojan.Heur.AutoIT.4 (B)
ComodoMalware@#2qevke6uj7pj5
DrWebWin32.HLLW.Autoruner.based
ZillyaWorm.AutoIt.Win32.3931
TrendMicroMal_Otorun-13
McAfee-GW-EditionBehavesLike.Win32.YahLover.hc
Trapminemalicious.high.ml.score
SophosMal/Generic-S
GDataGen:Trojan.Heur.AutoIT.4
JiangminWorm/AutoIt.pvb
GoogleDetected
AviraDR/AutoIt.Gen
MAXmalware (ai score=86)
ArcabitTrojan.Heur.AutoIT.4
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
McAfeeW32/Autorun.worm.zf.a
MalwarebytesMalware.AI.2752797740
TrendMicro-HouseCallMal_Otorun-13
IkarusTrojan-Downloader.Win32.AutoIt
FortinetW32/AutoIt.RN!tr
BitDefenderThetaAI:Packer.ADE5CE5E18
AVGWin32:Malware-gen
Cybereasonmalicious.698b79
PandaTrj/Autoit.gen

How to remove Malware.AI.2752797740?

Malware.AI.2752797740 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment