Malware

Should I remove “Malware.AI.729269978”?

Malware Removal

The Malware.AI.729269978 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.729269978 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Malware.AI.729269978?


File Info:

name: 8707B508831AD51A62FB.mlw
path: /opt/CAPEv2/storage/binaries/3f6e866705c50cf5be8be36e26eaf3e441cf4e5f0906935f43e43e8a34f97a6f
crc32: CAA15666
md5: 8707b508831ad51a62fb158e8b872802
sha1: d7fa2c513557dd2c7ecfa0d5e5762c2bb55818dc
sha256: 3f6e866705c50cf5be8be36e26eaf3e441cf4e5f0906935f43e43e8a34f97a6f
sha512: 7fd3d194a134691518a902ddee9f4b2e0724db4977713cf7bf9de5856f410e4a5e5c33ffb9ac39731702d9b87a4e506f9188a942926306d5325c4ef992d661f9
ssdeep: 24576:KW17otzOOQQozL5KriysK1i1C/aZNKh62L+sgyMgIrjG3/:KW17oQJpK12mkAlgZgak
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BC853A03B631DCF2FA0C1B32527A4739AA781E267570896BF770FD16AD73142862791E
sha3_384: 2088bc3d3621403253a1ce308f6a5f59ec01face1a8241c89e76e8e927b1706d8b84b3f13454e51ad3be5f0654f66848
ep_bytes: 558bec6aff68682855006854d3500064
timestamp: 2016-10-08 14:25:53

Version Info:

FileVersion: 1.0.0.0
FileDescription: 强力资源搜索器
ProductName: 强力搜索器
ProductVersion: 1.0.0.0
CompanyName: 博雅安全实验室
LegalCopyright: 博雅安全实验室
Comments: QQ群: 312940104
Translation: 0x0804 0x04b0

Malware.AI.729269978 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.mBRG
Elasticmalicious (high confidence)
FireEyeGeneric.mg.8707b508831ad51a
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Tiggre.rfn
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 005246d51 )
K7AntiVirusTrojan ( 005246d51 )
BitDefenderThetaGen:NN.ZexaF.34182.Or0@aSztAkdb
CyrenW32/Agent.EW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
KasperskyHEUR:Trojan.Win32.Bingoml.gen
AlibabaTrojan:Win32/Bingoml.b12588e8
RisingTrojan.Wacatac!8.10C01 (CLOUD)
ComodoTrojWare.Win32.TrojanDropper.Agent.HNMS@4xnjpy
ZillyaTrojan.Bingoml.Win32.6026
McAfee-GW-EditionBehavesLike.Win32.Generic.th
SentinelOneStatic AI – Malicious PE
SophosGeneric PUA NH (PUA)
APEXMalicious
MaxSecureTrojan.Malware.73385141.susgen
Antiy-AVLTrojan/Generic.ASMalwS.22056F2
CynetMalicious (score: 100)
VBA32Trojan.Bingoml
MalwarebytesMalware.AI.729269978
eGambitHackTool.Generic
FortinetW32/CoinMiner.65CA!tr
AVGWin32:Malware-gen
Cybereasonmalicious.13557d
Paloaltogeneric.ml

How to remove Malware.AI.729269978?

Malware.AI.729269978 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment