Malware

Malware.AI.2147444841 removal instruction

Malware Removal

The Malware.AI.2147444841 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2147444841 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the Alfonoso malware family

How to determine Malware.AI.2147444841?


File Info:

name: 24C745DF02B8D948CFBA.mlw
path: /opt/CAPEv2/storage/binaries/800d11fec84fa3126ff743c44c32880148caac8484ee8c58ff010bafa347d29e
crc32: 59552907
md5: 24c745df02b8d948cfba5d7a9d57c983
sha1: 7b8859eb33ef956e1d688725b8edfcfc8abe227d
sha256: 800d11fec84fa3126ff743c44c32880148caac8484ee8c58ff010bafa347d29e
sha512: 7f290675f07ec131288a0be22baae769ee43afa73a5d38760f4572fbd053a518f65c658cb6ce6706d19e78e08baf0c610563d9cc5cd0ba6d45bbf84d9d5aecef
ssdeep: 12288:FRo31XpZ6cXlYC2BvD0Lhd+EuKCEz0kxOhO0FIff6A5pRlBb:F2pg6Sjcd+YdAO0FIff6+Rf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D3F4F11D934DC279EE6B8EF26346DE6BF3702EED445F1C8A51FAC59C3082942A652CC1
sha3_384: 5661b3e52747026c16c18c833f2be502cd720fef9ec45d6112bec73fbefbd60eaf16ae9e92a3347f84bf1aa5728d065e
ep_bytes: e8a3020000e97afeffff558bec8b4508
timestamp: 2022-07-23 22:21:35

Version Info:

0: [No Data]

Malware.AI.2147444841 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Lazy.224568
FireEyeGeneric.mg.24c745df02b8d948
ALYacGen:Variant.Lazy.224568
CylanceUnsafe
VIPREGen:Variant.Lazy.224568
AlibabaTrojanPSW:Win32/Matanbuchus.ac2bffbc
Cybereasonmalicious.b33ef9
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32multiple detections
APEXMalicious
KasperskyHEUR:Trojan.Win32.Matanbuchus.gen
BitDefenderGen:Variant.Lazy.224568
AvastWin32:PWSX-gen [Trj]
TencentWin32.Trojan.Falsesign.Hrzb
Ad-AwareGen:Variant.Lazy.224568
SophosMal/Generic-S
DrWebTrojan.Siggen18.23328
McAfee-GW-EditionArtemis!Trojan
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Lazy.224568 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Lazy.224568
JiangminTrojan.Matanbuchus.ce
ArcabitTrojan.Lazy.D36D38
MicrosoftPWS:MSIL/Phoenix.GG!MTB
CynetMalicious (score: 100)
McAfeeGenericRXTS-HP!24C745DF02B8
MAXmalware (ai score=85)
VBA32BScope.Trojan.Wacatac
MalwarebytesMalware.AI.2147444841
RisingTrojan.Undefined!8.1327C (CLOUD)
AVGWin32:PWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.2147444841?

Malware.AI.2147444841 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment