Malware

What is “Malware.AI.2861954227”?

Malware Removal

The Malware.AI.2861954227 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2861954227 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.2861954227?


File Info:

name: 5ED87DEE92CACE82A3F6.mlw
path: /opt/CAPEv2/storage/binaries/4a72101b229c18fba2ddb93d839f646eed3636ae7172071e682f73c9fcd0425b
crc32: 195D3AAA
md5: 5ed87dee92cace82a3f6488c7dfafffa
sha1: 63db8b0a9522a4a45d4abe7121957e3b2ff00c52
sha256: 4a72101b229c18fba2ddb93d839f646eed3636ae7172071e682f73c9fcd0425b
sha512: f6179e536ad8a7017d3685c25b38d3159ed961313b757c52db04d972464a479d7069e02f785860af5373730e69903ae002b5015663f51aab23b04ceb8e452b06
ssdeep: 3072:EtVMBzQkt0ZHiHtFCZ/b0rVDCVwBP7M26Xs:8IzQCHzCBHVwF7M4
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T199A3C24163E410A4F473EA79A9B08116DB7ABD515B22EF9F5350420E0F76AE1DE38F32
sha3_384: a6c041175f4a4b31907e94e7cada4c092ad5c54cc3df144607a7279f93ce1ec3546a3b526d31be93afa3affed21aa1dc
ep_bytes: 4883ec28e88f0500004883c428e97afe
timestamp: 2020-12-09 14:31:37

Version Info:

CompanyName: Oracle Corporation
FileDescription: Java(TM) Platform SE binary
FileVersion: 11.281.2.09
Full Version: 11.281.2.09
InternalName: Java SSV Agent Process
LegalCopyright: Copyright © 2020
OriginalFilename: ssvagent.exe
ProductName: Java(TM) Platform SE 8 U281
ProductVersion: 8.0.2810.9
Translation: 0x0000 0x04b0

Malware.AI.2861954227 also known as:

GridinsoftRansom.Win64.Wacatac.sa
MalwarebytesMalware.AI.2861954227
FortinetW32/Nestha.C

How to remove Malware.AI.2861954227?

Malware.AI.2861954227 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment