Malware

Malware.AI.369288676 (file analysis)

Malware Removal

The Malware.AI.369288676 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.369288676 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.369288676?


File Info:

name: FC96D50BEBA58DC62F24.mlw
path: /opt/CAPEv2/storage/binaries/b9403e71ffa88fdba62b3d178c4c0019d157b3e6dd0dd4605004c343c48c1ff5
crc32: 5AA2AE31
md5: fc96d50beba58dc62f248124d7331ae2
sha1: 21ada29f56a631fc67f2e5f826bad38c876eda1a
sha256: b9403e71ffa88fdba62b3d178c4c0019d157b3e6dd0dd4605004c343c48c1ff5
sha512: 68b08ddc83cd64ab723b26cbe1822f1987b7dd83f9642ada507a91743effc62c4874e36516dc1a7cd317729a55783b2dd2a3808d2d207bd563c71267f40fd5d9
ssdeep: 6144:UTxVCvCx+PCqW0GJ3MM/yO5YVlw0BTH155r72Mdc8uCNxu:UuqZ0GO3/fTn5rP8
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1604423DABE664A3BEBC4FE397DBE97A1B6C0E307340E45518A642186920C5B8F54F503
sha3_384: a8d5aec036cb25bf917ea50715064071cd144b290dd32fd84d07febab11c21b3939d9c7af16ce1d973656dbcfd8469ac
ep_bytes:
timestamp: 2019-09-04 19:31:32

Version Info:

0: [No Data]

Malware.AI.369288676 also known as:

LionicTrojan.Win32.Coinminer.4!c
MicroWorld-eScanTrojan.GenericKDZ.70376
ClamAVWin.Trojan.Coinminer-9670639-0
SangforCoinMiner.Win32.Agent.V44b
AlibabaTrojan:Win32/CoinMiner.948d1720
Cybereasonmalicious.beba58
APEXMalicious
BitDefenderTrojan.GenericKDZ.70376
AvastWin32:XMRMiner-H [Miner]
Ad-AwareTrojan.GenericKDZ.70376
SophosMal/Generic-S
DrWebTool.BtcMine.2169
VIPRETrojan.GenericKDZ.70376
McAfee-GW-EditionArtemis!Trojan
Trapminemalicious.moderate.ml.score
FireEyeTrojan.GenericKDZ.70376
EmsisoftTrojan.GenericKDZ.70376 (B)
GDataTrojan.GenericKDZ.70376
Antiy-AVLTrojan/Win64.CoinMiner
ArcabitTrojan.Generic.D112E8
ViRobotTrojan.Win32.Z.Coinminer.255808
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
ALYacTrojan.GenericKDZ.70376
MAXmalware (ai score=85)
VBA32Trojan.Win64.CoinMiner
MalwarebytesMalware.AI.369288676
RisingHackTool.CoinMiner!1.BD2E (CLASSIC)
IkarusTrojan.Win64.CoinMiner
FortinetW64/CoinMiner.2169!tr
AVGWin32:XMRMiner-H [Miner]

How to remove Malware.AI.369288676?

Malware.AI.369288676 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment