Malware

Malware.AI.2059777447 removal

Malware Removal

The Malware.AI.2059777447 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2059777447 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.2059777447?


File Info:

name: 18A6A55A976EC9670CDB.mlw
path: /opt/CAPEv2/storage/binaries/184bb7f49ed009b590c87100ace4b1f0ceb3cdecdbac5b360ea577e17796791b
crc32: E375B859
md5: 18a6a55a976ec9670cdbe85d1826f5f5
sha1: 1a22d6bbf9f49c37e833baa805665ba9497757a0
sha256: 184bb7f49ed009b590c87100ace4b1f0ceb3cdecdbac5b360ea577e17796791b
sha512: 6bb45e12d880b91973aa29515539e21062e907bd9c3cedb299d2ea3fb85905ab7e60b3ba3a6313939ad604da15476ab102bedfc15ad3391c79881537c6d84e6d
ssdeep: 98304:I37NPBNGeFIz2RdNRorGjPUn3oCVwhIH:YkemSLNGSGZehc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BD46227353651189F0D8DC3EC937FEE471F256BBC941B8B8A9DE69C23622895D213883
sha3_384: b29d098a41973dcf09eba501c60f6917dfc46b765f2b8128733ed83099c9bdbe2d3762c2c3db08edf972433949731555
ep_bytes: 68b80a5475e89ec4fdff66458957089c
timestamp: 2022-01-23 10:35:40

Version Info:

0: [No Data]

Malware.AI.2059777447 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Lazy.146651
FireEyeGeneric.mg.18a6a55a976ec967
ALYacGen:Variant.Lazy.146651
CylanceUnsafe
Cybereasonmalicious.a976ec
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HPDP
APEXMalicious
ClamAVWin.Packed.Asprotect-9937510-0
BitDefenderGen:Variant.Lazy.146651
AvastWin32:PWSX-gen [Trj]
RisingTrojan.Generic@AI.93 (RDML:CfNeBxgzHhYyLOwBf1+UVA)
Ad-AwareGen:Variant.Lazy.146651
SophosGeneric ML PUA (PUA)
F-SecureTrojan.TR/Dropper.Gen2
VIPREGen:Variant.Lazy.146651
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Lazy.146651 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Lazy.146651
AviraTR/Dropper.Gen2
MAXmalware (ai score=83)
ArcabitTrojan.Lazy.D23CDB
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Acronissuspicious
VBA32BScope.Trojan.Tiggre
MalwarebytesMalware.AI.2059777447
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaAI:Packer.395ECF9C21
AVGWin32:PWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Malware.AI.2059777447?

Malware.AI.2059777447 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment