Malware

Malware.AI.1243778410 removal tips

Malware Removal

The Malware.AI.1243778410 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1243778410 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Malware.AI.1243778410?


File Info:

name: 522E692EF9840C62CE67.mlw
path: /opt/CAPEv2/storage/binaries/de01b099483185ab0ed68447d144c521dd14fe84031058763ba5892f167c4a7a
crc32: 3EA43052
md5: 522e692ef9840c62ce67797c33a5866d
sha1: da78051a9e4e9fcee332bcf1d05eaf6936dfbe05
sha256: de01b099483185ab0ed68447d144c521dd14fe84031058763ba5892f167c4a7a
sha512: a7ae2bd671ac8392579b895d655414ca9f7fde4c38c9038bb0f7f865158c7446ffd1a274fc151d65af33234e9c5c35c867c1141c35bf1affa0db8c188f3c2377
ssdeep: 12288:ls9qrLI33MBKXAkt4dzzzXDKXFk4fEJoRsAH:lzrLIMBKXNFpfEq6I
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B1E4E7C25E289E1AD4140132762976BF95983437E3B1D2EF7A883D1A356E3D3F0B5329
sha3_384: 5e2a99ae1feb9c9de2cf74f2d3bb7c8cf67469cb4cd5132d6d29d48d3336905924838ee524e7d43781d26f86f235bfd3
ep_bytes: 68d8764000e8eeffffff000040000000
timestamp: 2006-08-19 12:03:41

Version Info:

Translation: 0x0409 0x04b0
Comments: This programm can change in a few minute big documents from cirilic to Latin or from Latin to Crilic. You may get this programm free after registration from zulfinur @yahoo.com
CompanyName: mBrothers Co.
FileDescription: This programm can change in a few minute big documents from cirilic to Latin or from Latin to Crilic. You may get this programm free after registration from zulfinur @yahoo.com
LegalTrademarks: mBrothers
ProductName: Changer
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Kiril-Lotin
OriginalFilename: Kiril-Lotin.exe

Malware.AI.1243778410 also known as:

BkavW32.AIDetect.malware2
LionicVirus.Win32.Virut.lJwt
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.383131
FireEyeGeneric.mg.522e692ef9840c62
ALYacGen:Variant.Bulz.383131
CylanceUnsafe
SangforWorm.Win32.Convagent.gen
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaVirus:Win32/Virut.dbd38d2a
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H0CB122
ClamAVWin.Worm.Palevo-9883525-0
KasperskyVHO:Worm.Win32.Convagent.gen
BitDefenderGen:Variant.Bulz.383131
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
AvastWin32:Virut-AFB
SophosGeneric ML PUA (PUA)
ZillyaWorm.Convagent.Win32.44
McAfee-GW-EditionBehavesLike.Win32.VBObfus.jh
EmsisoftGen:Variant.Bulz.383131 (B)
IkarusVirus.Win32.Virut
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=87)
Antiy-AVLVirus/Win32.Virut.ce
MicrosoftTrojan:Win32/Wacatac.B!ml
ViRobotWorm.Win32.Z.Agent.659456
ZoneAlarmVHO:Worm.Win32.Convagent.gen
GDataGen:Variant.Bulz.383131
CynetMalicious (score: 100)
McAfeeArtemis!522E692EF984
VBA32Worm.Convagent
MalwarebytesMalware.AI.1243778410
APEXMalicious
RisingWorm.Convagent!8.12386 (CLOUD)
SentinelOneStatic AI – Malicious PE
FortinetW32/PossibleThreat
AVGWin32:Virut-AFB
Cybereasonmalicious.ef9840

How to remove Malware.AI.1243778410?

Malware.AI.1243778410 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment