Malware

How to remove “Malware.AI.2964234257”?

Malware Removal

The Malware.AI.2964234257 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2964234257 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • Starts servers listening on 127.0.0.1:0
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality

How to determine Malware.AI.2964234257?


File Info:

name: 06DBBC1CD0732BD18E5C.mlw
path: /opt/CAPEv2/storage/binaries/09b6bbf033cd9bbfb3f068c43b63f9cb38dddd4a8cc7efd108ace3127ee62fbb
crc32: C198BD3E
md5: 06dbbc1cd0732bd18e5c83887da436d9
sha1: 74280afc279e47480c602efbc05d74163d0da2a5
sha256: 09b6bbf033cd9bbfb3f068c43b63f9cb38dddd4a8cc7efd108ace3127ee62fbb
sha512: e4a38d76a214d6c79b38481f0e1517c012a0ea128741c4780b59f95bb17220f2dccb9e01d69f1ccc65772962069b5fad1ad0eaf804c4e2716e4dd6de052cde5f
ssdeep: 49152:dGtlqzIIU6inDEQwoHjKhs1iev+Z05457H2Oq4OkAdRk+rs4FXAyK+fIZiPamb8u:7+nHKhs1ixUmkfAy/+Fmb
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T149F59E52A3A400E8D9B7D138C9564623E7F2B86513B09BDF06B4C6790F23BE16E3E751
sha3_384: 84203a71628a7789a62d14cf100c7f5659674cf8accbe7d3d8459ebead78e4bd0e183fff3b24db9c68ac915d156bd9a3
ep_bytes: 4883ec28e8d70700004883c428e972fe
timestamp: 2021-12-05 19:18:29

Version Info:

0: [No Data]

Malware.AI.2964234257 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.38197559
FireEyeTrojan.GenericKD.38197559
ALYacTrojan.GenericKD.38197559
MalwarebytesMalware.AI.2964234257
K7AntiVirusTrojan ( 00578aba1 )
AlibabaTrojan:Win64/Kryptik.ad4d68f9
K7GWTrojan ( 00578aba1 )
ESET-NOD32a variant of Win64/Kryptik.CHJ
BitDefenderTrojan.GenericKD.38197559
AvastWin64:Trojan-gen
Ad-AwareTrojan.GenericKD.38197559
SophosMal/Generic-S
McAfee-GW-EditionBehavesLike.Win64.Dropper.wh
EmsisoftTrojan.GenericKD.38197559 (B)
GDataWin64.Trojan.Agent.SFTV1P
AviraHEUR/AGEN.1143241
GridinsoftRansom.Win64.Sabsik.sa
MicrosoftTrojan:Win32/Caynamer.A!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R452295
McAfeeArtemis!06DBBC1CD073
MAXmalware (ai score=85)
TrendMicro-HouseCallTROJ_GEN.R002H0AL521
IkarusTrojan.Win64.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW64/Kryptik.CHJ!tr
AVGWin64:Trojan-gen

How to remove Malware.AI.2964234257?

Malware.AI.2964234257 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment