Malware

Malware.AI.1988083333 removal instruction

Malware Removal

The Malware.AI.1988083333 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1988083333 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.1988083333?


File Info:

name: 49E8CB4FD414EAC63A7B.mlw
path: /opt/CAPEv2/storage/binaries/07efdd9a093dd754d3d827b414acf05ec16623d475d41e6a73d5b8c7d49c74da
crc32: 732FAA18
md5: 49e8cb4fd414eac63a7b34a480e560df
sha1: eddf061013a3d4da876b549e9b834cc9f2798b15
sha256: 07efdd9a093dd754d3d827b414acf05ec16623d475d41e6a73d5b8c7d49c74da
sha512: 011db91cf48b71d64fe060b5f7edf27c32a081952ac66a4d5640a4449506ea0cafe50fad226cc127cf68fe652fa5b79f85def4c1f45693ae035f927d74c2c36a
ssdeep: 98304:ruWB64DaUJTdeFToNIoYsNIpZBhkJOSKBrPhO245gmtsE+FD+JXVgx4cwA/JiA1X:rTDaUJTdeF0NWFpvh6OV/q5gAsE+p+za
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17B361101AEA0046ECF311B3104275E116126BFE0AFB5948FD6BC3E296A3F78DD725B95
sha3_384: 4d904ed522b260e9341fb3ad49d484475b5a7d29cf01c17733c971bdd5164c6dbb993a7f4d270b90597bc05faeb2d9ec
ep_bytes: e866050000e978feffffcccccccccccc
timestamp: 2022-01-24 07:31:18

Version Info:

0: [No Data]

Malware.AI.1988083333 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fugrafa.223728
FireEyeGeneric.mg.49e8cb4fd414eac6
McAfeeArtemis!49E8CB4FD414
CylanceUnsafe
ZillyaTrojan.Bingoml.Win32.8340
SangforTrojan.Win32.Generic.ky
K7AntiVirusTrojan ( 005826e71 )
AlibabaTrojan:MSIL/CoinMiner.9a50c453
K7GWTrojan ( 005826e71 )
Cybereasonmalicious.013a3d
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/CoinMiner.BNN
TrendMicro-HouseCallTROJ_GEN.R002C0RB722
ClamAVWin.Malware.Fugrafa-9938779-0
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Variant.Fugrafa.223728
AvastWin64:CoinminerX-gen [Trj]
TencentMsil.Trojan.Coinminer.Pgng
Ad-AwareGen:Variant.Fugrafa.223728
SophosGeneric ML PUA (PUA)
TrendMicroTROJ_GEN.R002C0RB722
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
EmsisoftGen:Variant.Fugrafa.223728 (B)
GDataGen:Variant.Fugrafa.223728
AviraHEUR/AGEN.1235752
GridinsoftRansom.Win32.Miner.sa
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4956732
VBA32BScope.Trojan.Meterpreter
ALYacGen:Variant.Fugrafa.223728
MAXmalware (ai score=88)
MalwarebytesMalware.AI.1988083333
APEXMalicious
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:htcacZZ2xunmt4RJEJvBxA)
SentinelOneStatic AI – Malicious SFX
eGambitUnsafe.AI_Score_100%
FortinetAdware/Miner
AVGWin64:CoinminerX-gen [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.1988083333?

Malware.AI.1988083333 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment