Malware

About “Malware.AI.2046077946” infection

Malware Removal

The Malware.AI.2046077946 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2046077946 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.2046077946?


File Info:

name: 5761D464698CB90430CC.mlw
path: /opt/CAPEv2/storage/binaries/852eb9bef870421c8c5f2d9049493a6ac48b504bbc3e8f2f6f7a8b194b09c9a5
crc32: 385597EE
md5: 5761d464698cb90430cc55af6ff43ff8
sha1: 86a8415e39edd2c645b775c31c85a9ee2de5a340
sha256: 852eb9bef870421c8c5f2d9049493a6ac48b504bbc3e8f2f6f7a8b194b09c9a5
sha512: 971d0e6832ba9576401b3aee65d8c1bdd3bc9ebce16db6afb0d0b4448afe7bc889b1b6f598aa14f1ad4fcfbe3e3f1944463a5e6e2b5318ec8d65121207e8b4e6
ssdeep: 12288:clBuIFRgCp3lHaoI3kv1Rpp/c6z2V7l4YAlLjPd03eNPAVASQvnHV1K1yOL3:RIFpB1Rp294YSjPKeNPQAx91
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T130056C11B5A1E02ED4B35EF49929CBF96D386F221E55A8C36AC03E5C7F31983C526327
sha3_384: edc2a65f584b84af5e337282d5d59d59cfcf03b522024aaf649e91bde757e7d608024231d671b8c89340a301c3fad81a
ep_bytes: 64a100000000558bec6aff6810334500
timestamp: 2000-11-09 13:00:30

Version Info:

CompanyName: Design Science, Inc.
FileDescription: Microsoft Equation Editor
FileVersion: 00110900
InternalName: Equation Editor
LegalCopyright: Copyright © Design Science, Inc. 1990-2000
LegalTrademarks:
OriginalFilename: EQNEDT32.EXE
ProductName: Microsoft Equation Editor
ProductVersion: 3.1
Translation: 0x0409 0x04e4

Malware.AI.2046077946 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Doina.4!c
MicroWorld-eScanGen:Variant.Doina.63205
SkyhighBehavesLike.Win32.Generic.ch
ALYacGen:Variant.Doina.63205
MalwarebytesMalware.AI.2046077946
VIPREGen:Variant.Doina.63205
SangforTrojan.Win32.Kryptik.Vjo5
AlibabaBackdoor:Win32/Convagent.cda960b3
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.GNNJ
CynetMalicious (score: 100)
BitDefenderGen:Variant.Doina.63205
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Patched-AWW [Trj]
TencentTrojan.Win32.Pathced_ya.16001052
EmsisoftGen:Variant.Doina.63205 (B)
F-SecureTrojan.TR/Kryptik.tonqa
ZillyaBackdoor.Convagent.Win32.7423
FireEyeGeneric.mg.5761d464698cb904
SophosMal/Generic-S
GDataWin32.Trojan.PSE.1B7H1PS
GoogleDetected
AviraTR/Kryptik.tonqa
MAXmalware (ai score=84)
Antiy-AVLTrojan/Win32.GenKryptik
ArcabitTrojan.Doina.DF6E5
MicrosoftTrojan:Win32/Caynamer.A!ml
VaristW32/Convagent.DQ.gen!Eldorado
AhnLab-V3Malware/Win.Generic.C5482099
McAfeeArtemis!5761D464698C
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002H0CJ723
RisingTrojan.Generic@AI.100 (RDML:l0cTimiskr8uGzkXIKVFOQ)
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.GNNJ!tr
AVGWin32:Patched-AWW [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.2046077946?

Malware.AI.2046077946 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment