Malware

How to remove “Malware.AI.2239126742”?

Malware Removal

The Malware.AI.2239126742 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2239126742 virus can do?

  • A process attempted to delay the analysis task.
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

Related domains:

wpad.local-net
meron.kanoga-apps.com

How to determine Malware.AI.2239126742?


File Info:

name: 0BF049C74BEA69EDD5DE.mlw
path: /opt/CAPEv2/storage/binaries/c812028d5a55926dc21f49457a779d2c07b98cb8dd8733b65820391eeb1015e6
crc32: 2EAA885F
md5: 0bf049c74bea69edd5de92fe044f8b10
sha1: a935cc3f89806f3bdb8f02068d5ae6087ef5d0e4
sha256: c812028d5a55926dc21f49457a779d2c07b98cb8dd8733b65820391eeb1015e6
sha512: 79a3fca22b279f2808f39234116413e4061ea96f0b42814ecce9696be2e8af4c1f5ea9c1e430f74730a61960ef89c131d7cf02459ef9da9200c68b5981d9cb8a
ssdeep: 3072:of1BDZ0kVB67Duw9AMc7xqVMigqjhFvxJ0yQ:o9X0GtGMiBjhF9Q
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17B646CF6EA10F8A7DDDD0B304B7E1E3C97BA9D17616516074318B8F0AF332A3191A952
sha3_384: 793203771e61583f1b86a05dc66a60ce00437e056231148c4a1f6a79864a01cdbda00e0f3375ff0fd8d3f0fbb0cdf197
ep_bytes: 81ec8401000053565733db6801800000
timestamp: 2020-08-01 02:44:50

Version Info:

FileVersion: 3.4.70.766
ProductVersion: 3.4.96.165
Translation: 0x0409 0x04e4

Malware.AI.2239126742 also known as:

LionicTrojan.Win32.Adload.a!c
DrWebAdware.Downware.20015
MicroWorld-eScanTrojan.Generic.31215170
FireEyeTrojan.Generic.31215170
CAT-QuickHealTrojanDownloader.Adload
ALYacTrojan.Generic.31215170
CylanceUnsafe
K7AntiVirusTrojan-Downloader ( 0058ab1f1 )
AlibabaAdWare:Win32/AdLoad.4ca31fa5
K7GWTrojan-Downloader ( 0058ab1f1 )
CyrenW32/Adload.GF.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32NSIS/TrojanDownloader.Agent.NZR
TrendMicro-HouseCallTROJ_GEN.R002C0WKN21
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Downloader.Win32.Adload.gen
BitDefenderTrojan.Generic.31215170
AvastNSIS:DropperX-gen [Drp]
Ad-AwareTrojan.Generic.31215170
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0WKN21
McAfee-GW-EditionRDN/Generic Downloader.x
EmsisoftTrojan.Generic.31215170 (B)
GDataTrojan.Generic.31215170
WebrootW32.Trojan.Gen
AviraTR/Dldr.Agent.cmnjs
MAXmalware (ai score=88)
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.Generic.D1DC4E42
ViRobotTrojan.Win32.Z.Agent.325425
MicrosoftTrojan:Win32/Mamson.A!ac
CynetMalicious (score: 99)
AhnLab-V3Dropper/Win.DropperX-gen.C4785887
McAfeeRDN/Generic Downloader.x
VBA32suspected of Trojan.Downloader.gen
MalwarebytesMalware.AI.2239126742
APEXMalicious
TencentNsis.Trojan-downloader.Agent.Jwa
FortinetW32/Agent.NZR!tr.dldr
AVGNSIS:DropperX-gen [Drp]
PandaTrj/CI.A

How to remove Malware.AI.2239126742?

Malware.AI.2239126742 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment