Malware

Malware.AI.218874883 removal instruction

Malware Removal

The Malware.AI.218874883 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.218874883 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.218874883?


File Info:

name: FB7453B4CAFEEA56C415.mlw
path: /opt/CAPEv2/storage/binaries/ebaa44e5e5f5f537b42a65b32181392d80c2500cdcdfc6953a3cedad56825fa5
crc32: 637014A0
md5: fb7453b4cafeea56c41505799627e1c4
sha1: 7a01582df6197194c8361caa9473e7dc74da86f1
sha256: ebaa44e5e5f5f537b42a65b32181392d80c2500cdcdfc6953a3cedad56825fa5
sha512: c62deee7962c507db71bed8969de1ae46a03d77729e14d353dc999b5b98448c0d84a904cd76612fb019fc696609c862d5e56d6346c55b276888add60f589eb9f
ssdeep: 12288:Doukk2WTZxl+yqsov+AX3arX8orUMcKb1Ndr2UrH0T8Hg8ML5QOGR:UWtv+X8XUwb1rp04HBWpGR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A8F40286AE71C1A2EF948B71005A45F19B6DBC267F2CEE330E55371C4BB31BB980754A
sha3_384: 6f5f9c37a59cb78da0438eb2278ba66d12122d072351665dab39cc0f8ddf3c438d5483e9f826cc53ec05509d2e394297
ep_bytes: 60e80000000058059f0200008b3003f0
timestamp: 2021-12-28 04:04:48

Version Info:

Comments:
CompanyName: Tomabo
FileDescription: MP4 Player
FileVersion: 4, 8, 1, 0
InternalName: MP4 Player
LegalCopyright: (C) Tomabo. All rights reserved.
LegalTrademarks:
OriginalFilename: MP4Player.EXE
PrivateBuild:
ProductName: MP4 Player
ProductVersion: 4, 8, 1, 0
SpecialBuild:
Translation: 0x0409 0x04b0

Malware.AI.218874883 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Vtflooder.lnTD
FireEyeGeneric.mg.fb7453b4cafeea56
McAfeeGenericRXAA-AA!FB7453B4CAFE
MalwarebytesMalware.AI.218874883
SangforTrojan.Win32.Agent.Vfcn
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderThetaGen:NN.ZexaF.36164.Vm0@aic76khi
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Generic-9951961-0
AvastWin32:Malware-gen
SophosGeneric Reputation PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
Trapminemalicious.high.ml.score
SentinelOneStatic AI – Suspicious PE
WebrootW32.Malware.Gen
GoogleDetected
Antiy-AVLTrojan/Win32.PossibleThreat
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R460347
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.146596399.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.218874883?

Malware.AI.218874883 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment