Malware

Malware.AI.1092088926 malicious file

Malware Removal

The Malware.AI.1092088926 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1092088926 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.1092088926?


File Info:

name: 15EBF2B10C635FBC8A85.mlw
path: /opt/CAPEv2/storage/binaries/020122007aee549b0e4d60e8345894715ca8456683f80a2301613e28b07937a0
crc32: 3E9CE06D
md5: 15ebf2b10c635fbc8a85571af9629034
sha1: e23ab2555496d4834e31e230e7877dcee75911b9
sha256: 020122007aee549b0e4d60e8345894715ca8456683f80a2301613e28b07937a0
sha512: 7686c43f22e1a87ecf59883fdbf2312da27cd3b3c4f18c3f22f7d9a81c09237f4217186e67d76a5f2d54e8ae5f670ae3d966e53c88cc6c5a9ce5b3fff212d482
ssdeep: 24576:AMjhF/0vDPYj2Ik436uESpOQmHYZ5NAsJy0sUrBLkNwE3p34+UN99l0p6JvHY:zYvDPYSIH4STZNAsJy0ZYNbp34nz93Jw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C1451213B3C34872E5151939DC918448FE3779B829D6281A2DFDDE4E1E7C2C26C7AAB1
sha3_384: 8b69a9c0dc203f8762893791e658c2d559f311acec0e2e833a30b34010cf851baeb98d6fcee3ff90e3a26ec491f8705f
ep_bytes: 558bec83c4a453565733c08945c48945
timestamp: 2012-10-02 05:04:04

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: GamerPacos
FileDescription: Setup For Prototype 1
FileVersion: 1.0.0
LegalCopyright: © Game
ProductName: Prototype 1
ProductVersion: 1.0
Translation: 0x0000 0x04b0

Malware.AI.1092088926 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanAdware.Generic.3009628
FireEyeAdware.Generic.3009628
ALYacAdware.Generic.3009628
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
AlibabaAdWare:Win32/Loderka.f370124d
K7GWAdware ( 0057df331 )
K7AntiVirusAdware ( 0057df331 )
CyrenW32/Loderka.A.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/Adware.Loderka.I
BitDefenderAdware.Generic.3009628
AvastNSIS:Loderka-D [Adw]
TencentWin32.Risk.Adw.Eaed
Ad-AwareAdware.Generic.3009628
EmsisoftAdware.Generic.3009628 (B)
McAfee-GW-EditionBehavesLike.Win32.BadFile.tc
GDataAdware.Generic.3009628
AviraADWARE/Loderka.Gen
MicrosoftProgram:Win32/Uwamson.A!ml
McAfeeArtemis!15EBF2B10C63
MAXmalware (ai score=68)
MalwarebytesMalware.AI.1092088926
FortinetRiskware/Loderka
AVGNSIS:Loderka-D [Adw]

How to remove Malware.AI.1092088926?

Malware.AI.1092088926 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment