Malware

Malware.AI.1246668101 removal tips

Malware Removal

The Malware.AI.1246668101 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1246668101 virus can do?

  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality
  • Deletes executed files from disk
  • Attempts to modify Explorer settings to prevent file extensions from being displayed
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.1246668101?


File Info:

name: 8FCCF6B6474D266D2273.mlw
path: /opt/CAPEv2/storage/binaries/317f6eaebd576ae82e26e453576e74e0737eaf10836f0d2072ba6b34228cd6b5
crc32: DB9C4D09
md5: 8fccf6b6474d266d22736f4d842daf44
sha1: 8b1ebce7aed05131884824fdfd0b44dcadc3a6ea
sha256: 317f6eaebd576ae82e26e453576e74e0737eaf10836f0d2072ba6b34228cd6b5
sha512: c8846837988ec61e434319e25cf18b8aa5fdf6c606d6bbf8b6fbe8902a4781fb1a06cac2577f99e9c24532c5ca193637b9891b98859904ba24a6bddd3a097a9d
ssdeep: 1536:V3cpyORJLuB4P4AJJv4Romu/gYF5XCcx7icBbMVMEA:V3c1fP4AJJv45sCcx7JBb/EA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14453CF1A32C1D4BBD96752319D738B7AE3F79B01236256832B24AF7F2D31087D927581
sha3_384: 6cbef4abb04c3c73c9e519633d6ab40253efb88e37cd8889b428413d2a615d8900159f7776d004710908df12d07c507e
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-06-18 21:33:27

Version Info:

0: [No Data]

Malware.AI.1246668101 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanDropped:Generic.Startpage.10.538E1727
FireEyeDropped:Generic.Startpage.10.538E1727
CAT-QuickHealTrojan.NSIS.Startpage.DV
McAfeeArtemis!8FCCF6B6474D
MalwarebytesMalware.AI.1246668101
ZillyaDropper.StartPage.Win32.2147
K7AntiVirusTrojan ( 005658de1 )
K7GWTrojan ( 005658de1 )
CrowdStrikewin/malicious_confidence_90% (W)
VirITTrojan.Win32.StartPage.BYVJ
CyrenW32/Zlob.AF.gen!Eldorado
SymantecW32.Imaut
ESET-NOD32NSIS/StartPage.AP
BaiduNSIS.Trojan.StartPage.e
TrendMicro-HouseCallHV_ZYX_BH01027E.TOMC
ClamAVWin.Trojan.NSIS-32
KasperskyTrojan-Dropper.Win32.StartPage.dvq
BitDefenderDropped:Generic.Startpage.10.538E1727
NANO-AntivirusTrojan.Win32.StartPage.eljgc
CynetMalicious (score: 100)
SUPERAntiSpywareTrojan.Agent/Gen-Startpage
APEXMalicious
TencentTrojan.Win32.Startpage.OD
Ad-AwareDropped:Generic.Startpage.10.538E1727
EmsisoftDropped:Generic.Startpage.10.538E1727 (B)
ComodoTrojWare.Win32.Agent.giyt@3cwvfp
DrWebTrojan.StartPage.34355
VIPREDropped:Generic.Startpage.10.538E1727
TrendMicroTROJ_STARTP.SMHU
McAfee-GW-EditionStartPage-NQ
Trapminesuspicious.low.ml.score
SophosML/PE-A + Mal/StartP-AM
IkarusTrojan-Dropper.Win32.StartPage
AviraTR/Dropper.Gen
MAXmalware (ai score=84)
Antiy-AVLTrojan/Generic.ASMalwNS.3764
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataDropped:Generic.Startpage.10.538E1727
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R9483
VBA32Trojan.StartPage
ALYacDropped:Generic.Startpage.10.538E1727
CylanceUnsafe
AvastNSIS:StartPage-AK [Drp]
YandexNSIS.Startpage.Gen.20
SentinelOneStatic AI – Malicious PE
MaxSecureDropper.StartPage.dvq
FortinetW32/StartPage.BX!tr.NSIS
AVGNSIS:StartPage-AK [Drp]
Cybereasonmalicious.6474d2
PandaTrj/CI.A

How to remove Malware.AI.1246668101?

Malware.AI.1246668101 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment