Malware

Malware.AI.2965474620 removal tips

Malware Removal

The Malware.AI.2965474620 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2965474620 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.2965474620?


File Info:

name: C98EDBC395B3E60213C7.mlw
path: /opt/CAPEv2/storage/binaries/075f70cd8ed7535f99b7b278d13a737b3e95c7b6a0a8741aa2cd68f9b7594c32
crc32: 0F728AED
md5: c98edbc395b3e60213c7491369b98ece
sha1: cd576aeffab97cc4645b7678b71d855afbf24e04
sha256: 075f70cd8ed7535f99b7b278d13a737b3e95c7b6a0a8741aa2cd68f9b7594c32
sha512: 2f4c78153a831e8131a4c1c51d091d82676a4abe5add3e601bd753a6573bb86247cb3d7df51d5841a638d08803a10bcbedbd4d2e647ba6f4910a28a6bcdd218d
ssdeep: 768:8HauIL1Z7Ds7D17Dk7DOHauKvDLDNX3uYA5nY:qauRaukd3f
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AFE32AA1F76F3255F72849FB0526E70B5560FA28201787BBA78CB82F7C627241C29353
sha3_384: 0896fad97e2a6abddc34595a580a0c233d118af626735e7019ab2d1299c7c7638e06244834c2aaac67133003aff39909
ep_bytes: 60be002045008dbe00f0faff57eb0b90
timestamp: 2007-01-12 10:04:58

Version Info:

Translation: 0x0409 0x04b0
Comments: Microsoft Corporation
CompanyName: File Folder
ProductName:
FileVersion: 1.00
ProductVersion: 1.00
InternalName: FILE FOLDER
OriginalFilename: FILE FOLDER.exe

Malware.AI.2965474620 also known as:

tehtrisGeneric.Malware
MicroWorld-eScanGen:Trojan.Heur.jm0@!FZ@fTji
FireEyeGeneric.mg.c98edbc395b3e602
ALYacGen:Trojan.Heur.jm0@!FZ@fTji
CylanceUnsafe
SangforTrojan.Win32.Save.a
Cybereasonmalicious.395b3e
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.Hesv
BitDefenderGen:Trojan.Heur.jm0@!FZ@fTji
AvastWin32:Malware-gen
Ad-AwareGen:Trojan.Heur.jm0@!FZ@fTji
EmsisoftGen:Trojan.Heur.jm0@!FZ@fTji (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
VIPREGen:Trojan.Heur.jm0@!FZ@fTji
McAfee-GW-EditionW32/MoonLight.worm.c
Trapminesuspicious.low.ml.score
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.Heur.jm0@!FZ@fTji
JiangminTrojan.NSIS.Inject.a
AviraTR/Crypt.ULPM.Gen
ArcabitTrojan.Heur.E1D32A
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Worm/Win.VB.R526135
Acronissuspicious
McAfeeW32/MoonLight.worm.c
MAXmalware (ai score=85)
MalwarebytesMalware.AI.2965474620
RisingWorm.VBInjectEx!1.99E6 (CLASSIC)
IkarusTrojan.Win32.Patched
FortinetW32/ULPM.2C75!tr
BitDefenderThetaAI:Packer.3D28E0A41C
AVGWin32:Malware-gen

How to remove Malware.AI.2965474620?

Malware.AI.2965474620 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment