Malware

About “Malware.AI.852640239” infection

Malware Removal

The Malware.AI.852640239 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.852640239 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.852640239?


File Info:

name: 33EC732D59DC162A41B7.mlw
path: /opt/CAPEv2/storage/binaries/301a7409c89b53c164f3cadddfd9b6a077718362d7301f7906b00e5527c9f7a3
crc32: B8AA7B51
md5: 33ec732d59dc162a41b752307c8b6d0e
sha1: 6b43b846a81565a63cc3328a0409aa7df65091d6
sha256: 301a7409c89b53c164f3cadddfd9b6a077718362d7301f7906b00e5527c9f7a3
sha512: 9fd150bc593427194982a6514ed677c10fcee06d037fa9b8e705a960acae8fb717e06d5303372d036fc5138bfcf6fb5ea1ae826bfa9e2c855370c75b79ba0afa
ssdeep: 49152:9A85jckkyUeUfx0pvDnfDBeujRB/MrmECBL46oUlMX:Jikk+awfNeulmrmkX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18E067C90FDDF10F6D70358709C6B627F6730220A9739CAC7D6409F9AE8676E14A33626
sha3_384: 0b686c3ea51a8f8b46ab1ed009e25350ccd1c37d6c10153fd76431c366f8d72f6cbda49cea34bf079ac061730e50e3bb
ep_bytes: e98bdbffffcccccccccccccccccccccc
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Malware.AI.852640239 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.Autoruns.GenericKDS.31519466
FireEyeGeneric.mg.33ec732d59dc162a
McAfeeArtemis!33EC732D59DC
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 005705911 )
AlibabaTrojanDownloader:Win32/Autoruns.16005fbe
K7GWTrojan-Downloader ( 005705911 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.34182.TBW@a0U6nhni
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.EJH
TrendMicro-HouseCallTROJ_GEN.R002C0GK921
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Autoruns.GenericKDS.31519466
NANO-AntivirusTrojan.Win32.Vobfus.fmvjgc
AvastWin32:Malware-gen
TencentWin32.Trojan-downloader.Agent.Llhs
Ad-AwareTrojan.Autoruns.GenericKDS.31519466
SophosMal/Generic-S
ComodoMalware@#3btffrb8ukt1a
ZillyaTrojan.Vobfus.Win32.69931
TrendMicroTROJ_GEN.R002C0GK921
McAfee-GW-EditionBehavesLike.Win32.Generic.wh
EmsisoftTrojan.Autoruns.GenericKDS.31519466 (B)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.Autoruns.GenericKDS.31519466
JiangminTrojanDownloader.Banload.brqe
AviraTR/Downloader.aobr
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.2A404AF
MicrosoftTrojan:Win32/Occamy.C30
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Generic.C2921193
ALYacTrojan.Autoruns.GenericKDS.31519466
VBA32Trojan.Vobfus
MalwarebytesMalware.AI.852640239
APEXMalicious
RisingDownloader.Agent!8.B23 (CLOUD)
YandexTrojan.Vobfus!eeF10A5bFC4
IkarusTrojan-Downloader.Win32.Agent
MaxSecureTrojan.Malware.73947815.susgen
FortinetW32/Vobfus.AZPE!tr
AVGWin32:Malware-gen
Cybereasonmalicious.d59dc1
PandaTrj/CI.A

How to remove Malware.AI.852640239?

Malware.AI.852640239 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment