Malware

Malware.AI.2144928093 malicious file

Malware Removal

The Malware.AI.2144928093 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2144928093 virus can do?

  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the RedLine malware family

How to determine Malware.AI.2144928093?


File Info:

name: AA47F686B2423EED50CD.mlw
path: /opt/CAPEv2/storage/binaries/fea7b8c7ba00e61f3831277dacea949df39a9e6011e9447bbf14618d631882e8
crc32: 6C4FF9A8
md5: aa47f686b2423eed50cd2dd509921970
sha1: ae78f0c147a31141f46261b4ddb0cc60881de5b0
sha256: fea7b8c7ba00e61f3831277dacea949df39a9e6011e9447bbf14618d631882e8
sha512: 30c8f1d2304f8bd8486116dd33934a855d2a73ae905e72f4e0d2fdb8a2536f7e2ec0d612f8d3decc81473d94da3644e1ea80441ead07a6d9d806e0f2006d0cfc
ssdeep: 24576:tKCVkZGYxYD50sOZM2MB5JKlGeMbamCAEQMMsMKAH4bxgvdfLmG7sErvl3RuQ55d:gikt7VAEfHAH4bxgvdfPAErvl3Z
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T148C51A139A8B0E75DDC23BB461CB633AA734FD30CA3A9B7BF609C53559532C4681A742
sha3_384: f50c2b4e06b0c08d87fcf23607b0207e6e7ecb6e6583b427d1d452732efcad008f212dbec8de6901285514f498f21922
ep_bytes: 83ec0cc705b8e3510000000000e88eb6
timestamp: 2022-08-25 19:04:30

Version Info:

0: [No Data]

Malware.AI.2144928093 also known as:

BkavW32.AIDetect.malware2
ClamAVWin.Spyware.Redlinestealer-9965199-0
FireEyeTrojan.GenericKDZ.91288
CylanceUnsafe
BitDefenderTrojan.GenericKDZ.91288
CyrenW32/Trojan.HLPX-5019
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HQDK
CynetMalicious (score: 100)
KasperskyVHO:Trojan-Spy.Win32.Stealer.gen
MicroWorld-eScanTrojan.GenericKDZ.91288
RisingSpyware.Convagent!8.12330 (TFE:5:vyWeQ8A22bD)
Ad-AwareTrojan.GenericKDZ.91288
EmsisoftTrojan.GenericKDZ.91288 (B)
DrWebTrojan.PWS.Stealer.32450
VIPRETrojan.GenericKDZ.91288
IkarusTrojan.Win32.Krypt
GDataWin32.Trojan.PSE.1KEPK3Q
Antiy-AVLTrojan/Generic.ASMalwS.50E8
ArcabitTrojan.Generic.D16498
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.RedLineStealer.C5228750
VBA32TScope.Trojan.MSIL
ALYacTrojan.GenericKDZ.91288
MAXmalware (ai score=80)
MalwarebytesMalware.AI.2144928093
MaxSecureTrojan.Malware.121218.susgen
BitDefenderThetaGen:NN.ZexaF.34606.B!Z@a4umzOe
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]

How to remove Malware.AI.2144928093?

Malware.AI.2144928093 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment