Malware

Malware.AI.906710729 (file analysis)

Malware Removal

The Malware.AI.906710729 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.906710729 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Malware.AI.906710729?


File Info:

name: 7C512E357B1A80027B7D.mlw
path: /opt/CAPEv2/storage/binaries/ed12c2c757547424d2e1d81aea728d854675babeb029d606f3800009c911b8df
crc32: 74098B7E
md5: 7c512e357b1a80027b7d43c77ce7797e
sha1: 65a7b1f441e0d7756b9a08a67437693d6b7e4633
sha256: ed12c2c757547424d2e1d81aea728d854675babeb029d606f3800009c911b8df
sha512: 8945960b668edeb826a2b92f1bf288af833701fd91030a3ec28aaff110e64c65eabdce03f0780f8890d4a5bd88e50e4ac3fc5fa479b6a62f6deb21b1bee7a3c4
ssdeep: 3072:CHJMMsKoh/W+bdgoUCFjkpCXEt5pYCB6uM5TQEAuo102gPmsiLHKs3CyePrIZR:CyMseag+Fjk4XEtQ2ZVHz10i50rIZ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T128362D6E9F8A234C7980DED650C4328397E29D149DB3E274AF8CBAF7D27218D5350A4D
sha3_384: 29dfa08d26995d9466772509bd188fe137feae72a5fd4c6db37dc5abd8b57c39c2270011d1e19ec50ff30130051fac73
ep_bytes: 684c388900e8f0ffffff000000000000
timestamp: 2018-03-26 15:36:51

Version Info:

Translation: 0x0409 0x04b0
CompanyName: install
FileDescription: setup
ProductName: Ficha de Atendimento
FileVersion: 1.00
ProductVersion: 1.00
InternalName: -puxaxxx3-
OriginalFilename: -puxaxxx3-.exe

Malware.AI.906710729 also known as:

LionicTrojan.Win32.Agent.a!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Johnnie.256627
FireEyeGeneric.mg.7c512e357b1a8002
CAT-QuickHealTrojan.AVMF.S21202176
McAfeeGenericRXRE-BV!7C512E357B1A
CylanceUnsafe
ZillyaDownloader.Banload.Win32.100341
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 00504df01 )
AlibabaTrojanDownloader:Win32/Banload.53abc792
K7GWTrojan-Downloader ( 00504df01 )
Cybereasonmalicious.57b1a8
BitDefenderThetaGen:NN.ZevbaF.34182.@p0@aOOVk8fi
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/TrojanDownloader.Banload.XUK
TrendMicro-HouseCallTROJ_GEN.R002C0GLH21
KasperskyTrojan-Downloader.Win32.Agent.xxxypr
BitDefenderGen:Variant.Johnnie.256627
TencentWin32.Trojan-downloader.Agent.Ajbt
EmsisoftGen:Variant.Johnnie.256627 (B)
McAfee-GW-EditionGenericRXRE-BV!7C512E357B1A
IkarusTrojan-Downloader.Win32.Banload
AviraTR/Dropper.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Johnnie.256627
AhnLab-V3Trojan/Win32.Banload.R300109
VBA32TScope.Trojan.VB
ALYacGen:Variant.Johnnie.256627
MAXmalware (ai score=87)
MalwarebytesMalware.AI.906710729
APEXMalicious
RisingTrojan.Paskod!1.A0E0 (CLOUD)
YandexTrojan.GenAsa!l8kgnauhlcU
MaxSecureTrojan.Malware.1728101.susgen
FortinetW32/Banload.XUK!tr.dldr
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.906710729?

Malware.AI.906710729 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment