Malware

Malware.AI.318256791 removal instruction

Malware Removal

The Malware.AI.318256791 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.318256791 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Checks for the presence of known windows from debuggers and forensic tools

How to determine Malware.AI.318256791?


File Info:

name: 8700F34B261866F66F9B.mlw
path: /opt/CAPEv2/storage/binaries/f60623b3b4815f865fefc6d0ea6b7244e705494b48a0e5a8a2744d08bcd51ac8
crc32: 893DE5B2
md5: 8700f34b261866f66f9b414ce95144c9
sha1: 6370eb0700b0c3471dac3c0f8c08694dfd708da3
sha256: f60623b3b4815f865fefc6d0ea6b7244e705494b48a0e5a8a2744d08bcd51ac8
sha512: 0136a6ca9b7447bf513f19d25e9cad6dd538f4b3dc9f05ce4d01d4347989b78c644effc4bf127dac61f30562b49e370a2f979fe1331bea623234d13bc3576722
ssdeep: 6144:RJP+MQlkZGh+122QpXNyWeaCmqSO2gpebSYxHPVIMuTm:X+MQNhPP9cOSYxHN+Tm
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1ED64AE2B36B194F2C0A54FFE457908F587E47D9122B1C0576F85D82BADD2FD0BB22292
sha3_384: 7e02c58c30958c7520925db4912604675c366d0105cdd2dcf930fe3d43cc24c93146a0076f6868e7c3651133ab7d6ea0
ep_bytes: 8bff558bec837d0c017505e850210000
timestamp: 2023-04-10 08:09:25

Version Info:

CompanyName: TODO:
FileDescription: TODO:
FileVersion: 1.0.0.1
InternalName: Test.dll
LegalCopyright: Copyright (C) 2023
OriginalFilename: Test.dll
ProductName: TODO:
ProductVersion: 1.0.0.1
Translation: 0x0804 0x04b0

Malware.AI.318256791 also known as:

LionicTrojan.Win32.Yakes.mBig
MicroWorld-eScanGen:Variant.Jaik.139475
FireEyeGeneric.mg.8700f34b261866f6
SkyhighArtemis
McAfeeArtemis!8700F34B2618
Cylanceunsafe
ZillyaBackdoor.NetWiredRC.Win32.2530
SangforBackdoor.Win32.Kryptik.Vo58
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/NetWiredRC.c63117e4
K7GWTrojan ( 005a39ba1 )
K7AntiVirusTrojan ( 005a39ba1 )
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HTHR
APEXMalicious
KasperskyHEUR:Backdoor.Win32.NetWiredRC.gen
BitDefenderGen:Variant.Jaik.139475
AvastWin32:CrypterX-gen [Trj]
TencentMalware.Win32.Gencirc.11946184
TACHYONTrojan/W32.NetWiredRC.312320
EmsisoftGen:Variant.Jaik.139475 (B)
F-SecureTrojan.TR/Crypt.Agent.iregd
VIPREGen:Variant.Jaik.139475
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
GoogleDetected
AviraTR/Crypt.Agent.iregd
VaristW32/ABRisk.GQZL-8251
Antiy-AVLTrojan/Win32.Kryptik
KingsoftWin32.Troj.Undef.a
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Jaik.D220D3
ZoneAlarmHEUR:Backdoor.Win32.NetWiredRC.gen
GDataGen:Variant.Jaik.139475
CynetMalicious (score: 99)
AhnLab-V3Malware/Win.Generic.C5410855
BitDefenderThetaGen:NN.ZedlaF.36802.tu8@a0U1bAmj
ALYacGen:Variant.Jaik.139475
MAXmalware (ai score=84)
MalwarebytesMalware.AI.318256791
PandaTrj/Chgt.AD
RisingBackdoor.NetWiredRC!8.2AF (TFE:5:dcDxKrsM55L)
MaxSecureTrojan.Malware.74150817.susgen
FortinetW32/Kryptik.HTHR!tr
AVGWin32:CrypterX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan.Win.UnkAgent

How to remove Malware.AI.318256791?

Malware.AI.318256791 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment