Malware

Malware.AI.2973511130 removal tips

Malware Removal

The Malware.AI.2973511130 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2973511130 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.2973511130?


File Info:

name: A4E2769BBD6178A3D7F4.mlw
path: /opt/CAPEv2/storage/binaries/88bce4bbfe0840c0e8d08902c82b85f6b579f61d47952bebe51529f6d068cb77
crc32: E20B91C4
md5: a4e2769bbd6178a3d7f4dc9d7d1f2416
sha1: 188beb8fed433ed145b206c228269744f2091476
sha256: 88bce4bbfe0840c0e8d08902c82b85f6b579f61d47952bebe51529f6d068cb77
sha512: 179b34e4d11fdd74071c55fa641c1838d5d55813e27d8b89d8fef3a6deea731b2400c410a57494f452de02d2bb5d2becba27ae7c416935d3b81e675c2bae8a9b
ssdeep: 49152:TM84pYDtoZjydB3IisNBk9/fw2BwfmM0f2eOD2mUi6AjW/MUSdGRf3/s:wf/hWCisNi9Xwgwfoue+jxAZs
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T192F58F13AE9C9031D26F3D311E60E7991568BD208A137D87AED87E8DFAF05C1762D632
sha3_384: 073e8def50d883fb9df0a6cf581a81bdafe674b3e0cb6f18f285595972a9ad5a77d15d361419cfc1b35179befb806d12
ep_bytes: e85f3c0000e97bfeffffcccccc8b5424
timestamp: 2015-12-11 23:37:11

Version Info:

CompanyName: Microsoft Corporation
FileDescription: AppVDllSurrogate32
InternalName: AppVDllSurrogate
LegalCopyright: Copyright © 2014 Microsoft Corporation
LegalTrademarks: Microsoft® is a registered trademark of Microsoft Corporation.
OriginalFilename: AppVDllSurrogate32.exe
ProductName: Microsoft Application Virtualization (App-V)
FileVersion: 5.0.10334.0
ProductVersion: 5.0.10334.0
PrivateBuild: 50sp3Servicing (by sftbuild on MBAMR02BLD01)
Translation: 0x0409 0x04b0

Malware.AI.2973511130 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
McAfeeArtemis!A4E2769BBD61
CylanceUnsafe
CyrenW32/Ipamor.AI.gen!Eldorado
SymantecML.Attribute.HighConfidence
AvastWin32:Malware-gen
CynetMalicious (score: 100)
McAfee-GW-EditionBehavesLike.Win32.Generic.wm
SophosGeneric ML PUA (PUA)
GDataWin32.Trojan.Agent.22I9HL
JiangminTrojan.Bulz.lr
MaxSecureTrojan.Malware.121218.susgen
AviraHEUR/AGEN.1141982
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
MalwarebytesMalware.AI.2973511130
SentinelOneStatic AI – Malicious PE
FortinetW32/Ipamor.883D!tr
AVGWin32:Malware-gen

How to remove Malware.AI.2973511130?

Malware.AI.2973511130 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment