Malware

What is “Malware.AI.2926217831”?

Malware Removal

The Malware.AI.2926217831 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2926217831 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Malware.AI.2926217831?


File Info:

name: E43138E805720932828E.mlw
path: /opt/CAPEv2/storage/binaries/7d0d2525b1cf68c5b2bef00dcc03bfd0c634e6674f2772751a87d857e3c59872
crc32: FACF166E
md5: e43138e805720932828e2df472106311
sha1: 9cfa906dff8113c13563b73d85cb2bc4d692013e
sha256: 7d0d2525b1cf68c5b2bef00dcc03bfd0c634e6674f2772751a87d857e3c59872
sha512: 9ca4df329af31f196f8bd22b6a8580ab2926e64692b94a22c68cd44453b21a026b2d40523b1c61aaef4bb6149a59c732ac8dc2d98659132f303c16a180ff57da
ssdeep: 49152:NvyhW5LlCSvhobxYJ4RHA05A48vuUInOMK9f5hZ5HgYkLLqwS:oovhTwbA4YuUIOMAfZ5HgYm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19FA58D2137C18076D6A335759E5EA37DA1A9E6305B3482C7A2801F3D2E355D3BA3C62F
sha3_384: da7d61cb5bc0e4153b21f5a94f48fe870875320229e29a318006d34dfd3ed34ba5f67a083cc233d6262333f25493bbdd
ep_bytes: e8db830000e979feffff3b0db0dc5d00
timestamp: 2020-07-17 05:14:07

Version Info:

CompanyName: Internet Medietack Regstry Company
FileDescription: Medietack Regstry Water
FileVersion: 2.3.7.5
InternalName: SCmabmFrante.exe
LegalCopyright: (C)Internet Medietack Regstry Company 保留所有权利。
OriginalFilename: SCmabmFrante.exe
ProductName: SCmabm Frante Regstry Water
ProductVersion: 2.3.7.5
Translation: 0x0804 0x03a8

Malware.AI.2926217831 also known as:

LionicAdware.Win32.KuwanBar.2!c
MicroWorld-eScanGen:Variant.Johnnie.299081
FireEyeGen:Variant.Johnnie.299081
McAfeeArtemis!E43138E80572
CylanceUnsafe
ZillyaTool.YouXun.Win32.1532
SangforAdware.Win32.KuwanBar.gen
K7AntiVirusRiskware ( 005571cf1 )
AlibabaAdWare:Win32/KuwanBar.b93da07d
K7GWRiskware ( 005571cf1 )
Cybereasonmalicious.805720
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/RiskWare.YouXun.AC
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.KuwanBar.gen
BitDefenderGen:Variant.Johnnie.299081
TencentUw:RiskWare.Win32.DDLives.wb
Ad-AwareGen:Variant.Johnnie.299081
SophosGeneric PUA JM (PUA)
TrendMicroTROJ_GEN.R03FC0WKS21
McAfee-GW-EditionBehavesLike.Win32.PUP.vh
EmsisoftGen:Variant.Johnnie.299081 (B)
GDataGen:Variant.Johnnie.299081
JiangminAdWare.KuwanBar.bq
Antiy-AVLTrojan/Generic.ASMalwS.34E406A
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftPUA:Win32/Bitrepeyp.B
CynetMalicious (score: 100)
ALYacGen:Variant.Johnnie.299081
MAXmalware (ai score=82)
VBA32Adware.KuwanBar
MalwarebytesMalware.AI.2926217831
TrendMicro-HouseCallTROJ_GEN.R03FC0WKS21
RisingAdware.YouXun!1.D190 (CLOUD)
YandexPUA.KuwanBar!HNX2r68Pm4Q
MaxSecureTrojan.Malware.79570637.susgen
FortinetRiskware/YouXun
AVGWin32:Adware-gen [Adw]
PandaTrj/GdSda.A

How to remove Malware.AI.2926217831?

Malware.AI.2926217831 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment