Malware

How to remove “Malware.AI.1764241264”?

Malware Removal

The Malware.AI.1764241264 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1764241264 virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • A scripting utility was executed
  • Behavioural detection: Injection (inter-process)
  • Attempts to modify proxy settings
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.1764241264?


File Info:

name: 67802758B2F434ACB614.mlw
path: /opt/CAPEv2/storage/binaries/a83ddd4b32f857678c6150bf5f7f82670d0890c90b5636679c1ca2a9c889dfa0
crc32: DD84715E
md5: 67802758b2f434acb614b9875ee18cbb
sha1: b27315182153a5f09fc137768b1ea06467b06f2c
sha256: a83ddd4b32f857678c6150bf5f7f82670d0890c90b5636679c1ca2a9c889dfa0
sha512: 8ecddc3978b4215ac0ac2705b4f81914344060d66c34740e9d2f105b773589707e506757be1beb74629e01788d7ba10067338b4dbe1d4c46dbf2a665b985d164
ssdeep: 49152:duX0uQnlaD7pdZyN+SslP2V98YzQa2EsRn8dmrvZ6v1G7We1F:duEuQlaHpnyUZJ0xQL9Rmmrh6vMx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F995236737CA51BAC46253309D7023E632B52E70AC39A64BE7193E4CBBF07D545AA343
sha3_384: f2a49ad4e3673fc075cb83d9d70ce381650326f1a4c565a6bd61ae353e11270d559168448aeed346da7f25dfc7815c95
ep_bytes: e8e3feffff33c050505050e8be2b0000
timestamp: 2010-03-15 06:27:50

Version Info:

0: [No Data]

Malware.AI.1764241264 also known as:

BkavW32.Common.A9751260
LionicTrojan.Win32.Gamaredon.b!c
MicroWorld-eScanTrojan.GenericKD.69130415
FireEyeTrojan.GenericKD.69130415
SkyhighBehavesLike.Win32.BadFile.tc
McAfeeArtemis!67802758B2F4
MalwarebytesMalware.AI.1764241264
VIPRETrojan.GenericKD.69130415
SangforDropper.Win32.Gamaredon.Vbsy
K7AntiVirusRiskware ( 00584baa1 )
BitDefenderTrojan.GenericKD.69130415
K7GWRiskware ( 00584baa1 )
CrowdStrikewin/grayware_confidence_60% (D)
BitDefenderThetaGen:NN.ZedlaF.36792.Su8@am4VOBei
APEXMalicious
KasperskyTrojan-Dropper.Win32.Gamaredon.aaa
AlibabaTrojanDropper:Win32/Gamaredon.d3d94180
EmsisoftTrojan.GenericKD.69130415 (B)
SophosMal/Generic-S
KingsoftWin32.Troj.Undef.a
ArcabitTrojan.Generic.D41ED8AF
ZoneAlarmTrojan-Dropper.Win32.Gamaredon.aaa
GDataTrojan.GenericKD.69130415
ALYacTrojan.GenericKD.69130415
MAXmalware (ai score=87)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H09IB23
TencentWin32.Trojan-Dropper.Gamaredon.Kflw
MaxSecureTrojan.Malware.73677774.susgen
Cybereasonmalicious.82153a

How to remove Malware.AI.1764241264?

Malware.AI.1764241264 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment