Malware

Malware.AI.30713511 removal instruction

Malware Removal

The Malware.AI.30713511 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.30713511 virus can do?

  • At least one process apparently crashed during execution
  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.30713511?


File Info:

name: DF36E76B27E3E44E1997.mlw
path: /opt/CAPEv2/storage/binaries/d913d444f5dffeb68f5fedae3c09b1abbdcfc112b3105a5f07489773c604bb8a
crc32: 5D1C2F0B
md5: df36e76b27e3e44e19977d6e828a45d2
sha1: 5d0a2500ad81062c87061ed7c987d5efc09db1f4
sha256: d913d444f5dffeb68f5fedae3c09b1abbdcfc112b3105a5f07489773c604bb8a
sha512: f8621eb1b142a1d37c78e52ac33285bc6690c5bb3b76164a2c4aeb881b55c7ea906bf709f83854538f31fa0d66121c98adc6f1d88eef1640b33631ffa1ba55f8
ssdeep: 49152:ZMUT2dxC0jAdBXxs5dlb6iQvu0UHOaYmA:ZMHdxlUs5d4TrUHO2A
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12795DD222751CC61F35FC0B643E15EB979B329213772DC56AE4466342BF0EABE3D0662
sha3_384: 9f940a509e3c50c6aeb8e515f2e97a3c1de9f9a1dc418fb5bce28616ee0e5ab18f51c85791ac3e3b68c3d9cdb4650e25
ep_bytes: 2870164400e8eefffdff000000000020
timestamp: 2008-09-04 13:16:33

Version Info:

Translation: 0x0804 0x04b0
ProductName: winlog
FileVersion: 192.168.0001
ProductVersion: 192.168.0001
InternalName: Server
OriginalFilename: Server.exe

Malware.AI.30713511 also known as:

BkavW32.AIDetect.malware2
tehtrisGeneric.Malware
CynetMalicious (score: 100)
FireEyeGeneric.mg.df36e76b27e3e44e
McAfeeGenericRXAA-AA!DF36E76B27E3
CylanceUnsafe
Sangfor[ARMADILLO V1.71]
K7AntiVirusP2PWorm ( 0005d8211 )
K7GWP2PWorm ( 0005d8211 )
Cybereasonmalicious.b27e3e
BitDefenderThetaAI:Packer.DACEC6BA20
VirITTrojan.Win32.Agent.AHTO
CyrenW32/Trojan.RBWW-0985
SymantecTrojan.Dropper
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.VB.HD
BaiduWin32.Virus.Hehe.a
APEXMalicious
ClamAVWin.Malware.Bzub-6727003-0
KasperskyTrojan.Win32.Agent.ejmx
BitDefenderTrojan.GenericKD.61094947
NANO-AntivirusTrojan.Win32.AutoRun.ijsbbi
MicroWorld-eScanTrojan.GenericKD.61094947
AvastWin32:Trojan-gen
TencentTrojan.Win32.VB.mc
Ad-AwareTrojan.GenericKD.61094947
EmsisoftTrojan.GenericKD.61094947 (B)
DrWebWin32.HLLW.Autoruner1.27966
VIPRETrojan.GenericKD.61094947
TrendMicroPAK_Otorun8
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
Trapminesuspicious.low.ml.score
SophosMal/Generic-R
IkarusTrojan.Win32.Agent
GDataWin32.Trojan.PSE.10ADIDW
JiangminTrojan/VB.ogp
AviraTR/Dropper.AM
Antiy-AVLTrojan/Generic.ASCommon.3B
MicrosoftTrojan:Win32/Wacatac.B!ml
VBA32Trojan.Agent
ALYacWorm.Generic.400826
MAXmalware (ai score=89)
MalwarebytesMalware.AI.30713511
TrendMicro-HouseCallPAK_Otorun8
RisingWorm.Sperolz!1.A265 (CLASSIC)
YandexTrojan.GenAsa!geD/EAVdfsM
SentinelOneStatic AI – Malicious PE
AVGWin32:Trojan-gen
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.30713511?

Malware.AI.30713511 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment