Malware

How to remove “Malware.AI.2259880501”?

Malware Removal

The Malware.AI.2259880501 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2259880501 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.2259880501?


File Info:

crc32: FF384D80
md5: b5b8af681cb8f9c8c0156b36e987b3db
name: B5B8AF681CB8F9C8C0156B36E987B3DB.mlw
sha1: 2368204434069a4ede636da538ac77cadcbd6d07
sha256: 4d650c785a49d54f17a0395f2e2648ff25d34c38959fe22c26c767ee15cbd91d
sha512: de31cf8a0cd52ee527535009bbb37d77b6fe28b020483734353a02bb7cda6d0d7cda5ebf0187776cb2cdbba1241bc4a378a88bf9782c4b97ed92f8e08140d5e9
ssdeep: 49152:Mio0g4uT1QhyEekhGm1w6u69yZOEIafTP:MifASyEekIm1wZOmOEIafD
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017 Mozilla Corporation All rights reserved.
InternalName: Kingsoft Install Tool
FileVersion: 2.1.4.4
CompanyName: Mozilla Corporation
ProductName: Kingsoft Install Tool
ProductVersion: 2.1.4.4
FileDescription: Kingsoft Install Tool
OriginalFilename: Kingsoft Install Tool
Translation: 0x0409 0x04b0

Malware.AI.2259880501 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.201626
FireEyeGeneric.mg.b5b8af681cb8f9c8
Qihoo-360Win32/Miner.Generic.HgIASPsA
McAfeeArtemis!B5B8AF681CB8
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusSpyware ( 0052dfdd1 )
AlibabaTrojanSpy:Win32/MalwareX.178740c6
K7GWSpyware ( 0052dfdd1 )
Cybereasonmalicious.81cb8f
ArcabitTrojan.Bulz.D3139A
CyrenW32/S-cf835bfc!Eldorado
SymantecInfostealer
APEXMalicious
AvastWin32:JbossMiner-B [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Bulz.201626
NANO-AntivirusTrojan.Win32.Ursu.fayrgh
Paloaltogeneric.ml
TencentWin32.Trojan.Bugor.Pgmq
Ad-AwareGen:Variant.Bulz.201626
SophosMal/Generic-S
ComodoTrojWare.Win32.Spy.Delpem.A@7mkvv5
F-SecureHeuristic.HEUR/AGEN.1105094
TrendMicroTROJ_GEN.R002C0OBP21
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
EmsisoftGen:Variant.Bulz.201626 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1105094
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/Occamy.C4D
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Bulz.201626
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R313295
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34590.Gz1@aG2Aq7hj
ALYacGen:Variant.Bulz.201626
MAXmalware (ai score=99)
VBA32BScope.Trojan.Downloader
MalwarebytesMalware.AI.2259880501
ESET-NOD32a variant of Win32/Spy.Agent.PKE
TrendMicro-HouseCallTROJ_GEN.R002C0OBP21
RisingWorm.Xbash!1.B438 (CLOUD)
YandexTrojan.GenAsa!d9grjAxrhxs
IkarusTrojan-Spy.Agent
eGambitUnsafe.AI_Score_100%
FortinetW32/Agent.PKE!tr
AVGWin32:JbossMiner-B [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.2259880501?

Malware.AI.2259880501 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment