Malware

How to remove “Malware.AI.36475836”?

Malware Removal

The Malware.AI.36475836 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.36475836 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.36475836?


File Info:

name: 2FE8EAA91FBE497A2355.mlw
path: /opt/CAPEv2/storage/binaries/d5e15f2dd916534cd7b4781f3ee57d10414903640e59bb7e5f831ee6a2bfda62
crc32: 30BA707F
md5: 2fe8eaa91fbe497a2355ba7001d3aede
sha1: 86ffd28198048cb5a58558d91aa47d18b029bc0d
sha256: d5e15f2dd916534cd7b4781f3ee57d10414903640e59bb7e5f831ee6a2bfda62
sha512: 7b2d794044126f947060a3a7d9fb96cb7e86bb82ede498574f0899b9b70308a2fe15c9c1bc3435f45f157917205661013f89891cb710aa437e5a13a72f7e7152
ssdeep: 49152:91Oso8z8BbBPo6Gcx+YadH9XWNJ9seOWVBSPqLf6VJWWx:91O388lGcxyH9+9sbWVBiR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T119A523113DD1C6FECBA64073CD581FD1B2E6C6580E324E6723A9892E2FAC6928651F4D
sha3_384: 1f78dd7fd2522d5f47fae192a90bb49fb2b474b87507e13cc22e0fcf70c50ef19e6c26579f0e1f1559d364b378892037
ep_bytes: 558bec6aff68e0b94100682c4a410064
timestamp: 2010-11-18 16:27:35

Version Info:

CompanyName: Igor Pavlov
FileDescription: 7z Setup SFX
FileVersion: 9.20
InternalName: 7zS.sfx
LegalCopyright: Copyright (c) 1999-2010 Igor Pavlov
OriginalFilename: 7zS.sfx.exe
ProductName: 7-Zip
ProductVersion: 9.20
Translation: 0x0409 0x04b0

Malware.AI.36475836 also known as:

LionicTrojan.Win32.Jaik.4!c
MicroWorld-eScanGen:Variant.Jaik.39881
ALYacGen:Variant.Jaik.39881
APEXMalicious
BitDefenderGen:Variant.Jaik.39881
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Jaik.39881
McAfee-GW-EditionBehavesLike.Win32.BadFile.tc
FireEyeGen:Variant.Jaik.39881
EmsisoftGen:Variant.Jaik.39881 (B)
GDataGen:Variant.Jaik.39881
ArcabitTrojan.Jaik.D9BC9
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!2FE8EAA91FBE
MAXmalware (ai score=80)
MalwarebytesMalware.AI.36475836
TrendMicro-HouseCallTROJ_GEN.R002H09KJ21
FortinetW32/PossibleThreat
AVGWin32:Malware-gen

How to remove Malware.AI.36475836?

Malware.AI.36475836 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment