Malware

Malware.AI.306840068 removal

Malware Removal

The Malware.AI.306840068 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.306840068 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid

How to determine Malware.AI.306840068?


File Info:

name: 087116754F36F6C9C814.mlw
path: /opt/CAPEv2/storage/binaries/12a91eed8b113d804f3ad8683d5bc66ff0ed0605bf32d1b93fff54d04d5484a1
crc32: 68B28617
md5: 087116754f36f6c9c81427fc3a55a5fa
sha1: 7f8743e78aeffb2e2417a837e616ff85249e649c
sha256: 12a91eed8b113d804f3ad8683d5bc66ff0ed0605bf32d1b93fff54d04d5484a1
sha512: f1cd675cadd7afd1c64a3cbc9bf34c6fb156668dc099b334d1078dd48362b8f1fb854fdc9a957968d9bf9f0bbd245a5d8a3f14b384379e4025c08a62edfde8b8
ssdeep: 49152:whERnEFfYGg0T6C9fdP3M2g5VH7T640HzSurVnfW3QXtt1S5DDz3fFICvvMFmU:+F/6C9fhM2gjHueMfWImDDz3aH
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1C0E5234F254C1A61C0CEB2380F94DDF9F7E2AD664B95015B3AEC6E4B3BAD0634B16352
sha3_384: dbabfc899a63125e1344000c971410e87c17d10aae21f6731595d444ae49b9ce9701f34391f7d590e154533b38050d3d
ep_bytes: eb0805112c0000000000e94bea020056
timestamp: 2021-12-03 17:36:51

Version Info:

0: [No Data]

Malware.AI.306840068 also known as:

LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
DrWebTrojan.BtcMine.1580
MicroWorld-eScanTrojan.Generic.31341118
McAfeePacked-GV!087116754F36
CylanceUnsafe
K7AntiVirusTrojan ( 7000001d1 )
AlibabaPacked:Win32/VMProtect.3becc156
K7GWTrojan ( 7000001d1 )
Cybereasonmalicious.78aeff
CyrenW64/Razy.FF.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Packed.VMProtect.AB
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Vmprotect-6824127-0
KasperskyUDS:Rootkit.Win64.Agent.bhc
BitDefenderTrojan.Generic.31341118
AvastWin64:Trojan-gen
Ad-AwareTrojan.Generic.31341118
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0PL821
McAfee-GW-EditionBehavesLike.Win64.Drixed.wc
FireEyeGeneric.mg.087116754f36f6c9
EmsisoftTrojan.Generic.31341118 (B)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.Generic.31341118
AviraTR/Black.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.34E6B56
GridinsoftRansom.Win64.Sabsik.sa
ArcabitTrojan.Generic.D1DE3A3E
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 99)
VBA32Trojan.BtcMine
ALYacTrojan.Generic.31341118
MAXmalware (ai score=81)
MalwarebytesMalware.AI.306840068
TrendMicro-HouseCallTROJ_GEN.R002C0PL821
RisingTrojan.Tiggre!8.ED98 (CLOUD)
YandexTrojan.VMProtect!QKEATZlkMSA
IkarusTrojan.Win32.VMProtect
FortinetW32/Packed.GV!tr
AVGWin64:Trojan-gen
CrowdStrikewin/malicious_confidence_80% (W)

How to remove Malware.AI.306840068?

Malware.AI.306840068 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment