Malware

Malware.AI.1882415562 removal tips

Malware Removal

The Malware.AI.1882415562 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1882415562 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Guard pages use detected – possible anti-debugging.
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1882415562?


File Info:

name: 6C707A380A229FDF6776.mlw
path: /opt/CAPEv2/storage/binaries/dbb20ad4552e0e53c5a9ab0677f51a408af58980d7f99f19451377b710c31886
crc32: 5BBA9E6E
md5: 6c707a380a229fdf6776cbe99051eaf0
sha1: 40b150de71027ca9cf3fb039952589b531cd24f9
sha256: dbb20ad4552e0e53c5a9ab0677f51a408af58980d7f99f19451377b710c31886
sha512: b3b36e352f8da3c170972bf3f64cbeb57348e0ed7d13a8fb3e445eca75fdf7777e4dafb77008568a90522ce9b2f5681c98d22c23d10bd788439fdb0d5847160c
ssdeep: 12288:GmPb0H2VE/zLfPadxyMP20KZFGhrcD4Wi60atfZ05mfwRGmbSFFs26JEFx6F147c:xPb0W6zLHEbSbs2sE/6j47tCJuddHymK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15FD44A317552C136E4A711B1CA78ABFA546ABD20C73625C3A3C53E2E7E709D25A3123F
sha3_384: 6366beb7eecc0e078eb2db3b12f3699c6845951d26de8ad147bf985274a0ddf1e121dcc1abf775fc9475f3cd936f4ed3
ep_bytes: e8338a0000e989feffffb8d0684500a3
timestamp: 2018-10-25 04:59:14

Version Info:

CompanyName: 上海云骤网络科技有限公司
FileDescription: 简约日历安装程序
FileVersion: 6.0.1.1
LegalCopyright: (C) 上海云骤网络科技有限公司.
InternalName: install Moudle
OriginalFilename: install.exe
ProductName: install.exe
ProductVersion: 6.0.1.1
Translation: 0x0409 0x04b0

Malware.AI.1882415562 also known as:

LionicAdware.Win32.Agentb.2!c
MicroWorld-eScanTrojan.GenericKD.34201369
FireEyeGeneric.mg.6c707a380a229fdf
CAT-QuickHealTrojan.Bang5Mai
McAfeeArtemis!6C707A380A22
CylanceUnsafe
ZillyaAdware.Bang5mai.Win32.360
K7AntiVirusAdware ( 0052d3051 )
AlibabaAdWare:Win32/Agentb.c5be9a42
K7GWAdware ( 0052d3051 )
Cybereasonmalicious.80a229
BitDefenderThetaGen:NN.ZexaE.34084.Nu1@aCvdQWnj
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.Bang5mai.Z
TrendMicro-HouseCallTROJ_GEN.R002C0WL921
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:AdWare.Win32.Agentb.gen
BitDefenderTrojan.GenericKD.34201369
AvastWin32:Adware-gen [Adw]
TencentWin32.Adware.Agentb.Wqwu
Ad-AwareTrojan.GenericKD.34201369
EmsisoftTrojan.GenericKD.34201369 (B)
TrendMicroTROJ_GEN.R002C0WL921
McAfee-GW-EditionBehavesLike.Win32.Dropper.jh
SophosGeneric PUA EA (PUA)
JiangminAdWare.Agentb.t
AviraADWARE/Bang5Mai.smnnh
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotAdware.Bang5Mai.647168
GDataTrojan.GenericKD.34201369
CynetMalicious (score: 99)
VBA32BScope.Adware.Kuping
ALYacTrojan.GenericKD.34201369
MAXmalware (ai score=86)
MalwarebytesMalware.AI.1882415562
APEXMalicious
FortinetRiskware/Bang5mai
AVGWin32:Adware-gen [Adw]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Malware.AI.1882415562?

Malware.AI.1882415562 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment