Malware

What is “Malware.AI.1988686986”?

Malware Removal

The Malware.AI.1988686986 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1988686986 virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task

How to determine Malware.AI.1988686986?


File Info:

name: B8BE6F47D67542B7001D.mlw
path: /opt/CAPEv2/storage/binaries/bc39210f23ff3d25fa730f7382e0e16629b9cbe1321006d18479db9f8701165f
crc32: 36AFEDF3
md5: b8be6f47d67542b7001d32cd31de2110
sha1: fdec5d5fd9c196e505ccf45d8d0b5279d42de8b8
sha256: bc39210f23ff3d25fa730f7382e0e16629b9cbe1321006d18479db9f8701165f
sha512: 3f0c430114e0e4f4e934efbca9cf24a2aa114af69e2e8f9baaf325e777b8c4c507f89a1d2843c78912a04c8f802aac8180053c2ee2bbd584f4b6207310678bf7
ssdeep: 12288:NcrNS33L10QdrXj6DnXfQE0Y1BguU/7daK6EDYj7/aCgpEp3viz:wNA3R5drXmDXhkT/7daREDYjTgpNz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D7D4F102B6C684B2E6721D364939BB15A97CBD301E34DE2FB3D47D6CC971181A224BB7
sha3_384: 9430fae56233f639dce146a80d4bd14b188f79bf564cc4a30b6d3110a780be3b9e80f062c810331953c3a6de0578d649
ep_bytes: e85a040000e98efeffff3b0dc8a14300
timestamp: 2019-04-27 20:03:27

Version Info:

0: [No Data]

Malware.AI.1988686986 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.174081
SkyhighBehavesLike.Win32.Generic.jc
MalwarebytesMalware.AI.1988686986
VIPREGen:Variant.Bulz.174081
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005aa8a01 )
K7GWTrojan ( 005aa8a01 )
CrowdStrikewin/malicious_confidence_70% (D)
ArcabitTrojan.Bulz.D2A801
CynetMalicious (score: 100)
APEXMalicious
BitDefenderGen:Variant.Bulz.174081
AvastFileRepMalware [Misc]
EmsisoftGen:Variant.Bulz.174081 (B)
FireEyeGeneric.mg.b8be6f47d67542b7
SophosGeneric ML PUA (PUA)
IkarusTrojan.Inject
Kingsoftmalware.kb.a.966
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Bulz.174081
Cylanceunsafe
MAXmalware (ai score=85)
MaxSecureTrojan.Malware.300983.susgen
FortinetBAT/PSE.PSDQPF!tr
AVGFileRepMalware [Misc]
DeepInstinctMALICIOUS

How to remove Malware.AI.1988686986?

Malware.AI.1988686986 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment