Malware

How to remove “Malware.AI.1483661486”?

Malware Removal

The Malware.AI.1483661486 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1483661486 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.1483661486?


File Info:

name: F154E5E9501807A5585D.mlw
path: /opt/CAPEv2/storage/binaries/284489100699e5cd1f10730aeca59e400a997b794cde4e2714f96bcfa28f1e33
crc32: 909D81EB
md5: f154e5e9501807a5585d24436fe28e7b
sha1: c112b1e7db01a1dc92b6ed6cb9c435d2de1bf1db
sha256: 284489100699e5cd1f10730aeca59e400a997b794cde4e2714f96bcfa28f1e33
sha512: 917cc6676f8b6382a728fdd531f966041b58db61b10bd115090d294387bdec8a442e07c2cb699b390c00be9b765ead3b7a53499418636de56f9eddf770c9ace4
ssdeep: 98304:xv+vQp0W6i9buaUVXII4PLN4gQG4dy37dQ+73ExXVC6fb3ccleXj15IPjt138j+y:xv+ocJjVYzYG3deyp6Fiyw4oL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D276283DF48BAB71E0186C320625E863C1E991A16AC388E71337351DACB74B75ED7789
sha3_384: fed4e74ce54eb9f0aabbeb600f9fdd742fa4e2034cc56abd164e6cdbe1714545733a45cf79835308bf0d22af60895324
ep_bytes: 60be00d05e008dbe0040e1ff5789e58d
timestamp: 2012-07-19 12:20:22

Version Info:

0: [No Data]

Malware.AI.1483661486 also known as:

LionicRiskware.Win32.Malicious.1!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.f154e5e9501807a5
CAT-QuickHealTrojan.Agent
McAfeeArtemis!F154E5E95018
CylanceUnsafe
K7AntiVirusUnwanted-Program ( 004d554c1 )
K7GWUnwanted-Program ( 004d554c1 )
Cybereasonmalicious.7db01a
CyrenW32/Symmi.CA.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/GameTool.DI potentially unsafe
ClamAVWin.Trojan.Agent-1384079
NANO-AntivirusRiskware.Win32.InstallToolbar.foslwa
AvastFileRepMetagen [PUP]
SophosGeneric PUA MB (PUA)
DrWebTool.InstallToolbar.240
TrendMicroTROJ_GEN.R002C0OKO21
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
EmsisoftApplication.Toolbar (A)
JiangminVariant.Kazy.hy
Antiy-AVLTrojan/Generic.ASMalwS.13E3064
GridinsoftRansom.Win32.Wacatac.sa
CynetMalicious (score: 100)
VBA32Adware.Downware
MalwarebytesMalware.AI.1483661486
TrendMicro-HouseCallTROJ_GEN.R002H05KJ21
YandexTrojan.GenAsa!1HdciqxpnaQ
SentinelOneStatic AI – Malicious PE
MaxSecureWin.MxResIcn.Heur.Gen
FortinetW32/Generic.AC.431!tr
AVGFileRepMetagen [PUP]

How to remove Malware.AI.1483661486?

Malware.AI.1483661486 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment