Malware

Malware.AI.2438449222 removal

Malware Removal

The Malware.AI.2438449222 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2438449222 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Korean
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Installs WinPCAP
  • Anomalous binary characteristics

How to determine Malware.AI.2438449222?


File Info:

name: 832F1AD01C386E0109AE.mlw
path: /opt/CAPEv2/storage/binaries/46cfb5e5e8917215ac51813284c0905319e8a25d5161c2ec0de2d618478b6af4
crc32: 41D72CC0
md5: 832f1ad01c386e0109aeaabe4210804b
sha1: c2b271eb9afc7d4fe4b9fb03dfd88150747bed31
sha256: 46cfb5e5e8917215ac51813284c0905319e8a25d5161c2ec0de2d618478b6af4
sha512: e2d20af61af7c7becff383c59326cf1cdbcdac18da48971e63b4bc88c08e11c64c769af09a90ee15b7daa710f0ece7e2e559fd0706d8f9830ac3f0d5588e208f
ssdeep: 12288:0YlBZIqBm9IxjQA4ENuRKLVvUg4u0QDG+5ISzQL/VE/l6xxDM7Os:biqc9IFp4EERKxcEG+5fQL/VtNMP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ACC4F12377C2E0BAE071057194AEEF76DEFAE471A9645007B3A40B3D2E28561DF2164F
sha3_384: 1d34c7e1edaa9512eebc75fb7c4649a8b7ca08d4daf7b2d0284cd8d53c53f17148fa28651d7f6ffa061cf233286a2b1a
ep_bytes: e8bf6f0000e978feffff8bff558bec81
timestamp: 2012-05-12 19:56:59

Version Info:

FileDescription: Application
FileVersion: 1, 0, 0, 2
InternalName: Application
LegalCopyright: Copyright (C) 2013 Application
OriginalFilename: Application
ProductName: Application
ProductVersion: 1, 0, 0, 2
Translation: 0x0009 0x04b0

Malware.AI.2438449222 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Adware.Ursu.71855
McAfeePUP-XFB-XH
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusAdware ( 0054de781 )
AlibabaAdWare:Win32/Kraddare.550e5dca
K7GWAdware ( 0054de781 )
Cybereasonmalicious.01c386
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.Kraddare.KY
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Adware.Ursu.71855
TencentMalware.Win32.Gencirc.10b4fab5
Ad-AwareGen:Variant.Adware.Ursu.71855
EmsisoftGen:Variant.Adware.Ursu.71855 (B)
DrWebTrojan.Adkor.292
ZillyaTrojan.Kora.Win32.3
TrendMicroTROJ_GEN.R002C0PL621
McAfee-GW-EditionPUP-XFB-XH
FireEyeGeneric.mg.832f1ad01c386e01
SophosGeneric PUA MC (PUA)
Paloaltogeneric.ml
GDataGen:Variant.Adware.Ursu.71855
JiangminTrojan/Generic.bcrev
AviraTR/Crypt.XPACK.147918
Antiy-AVLTrojan/Generic.ASMalwS.FA2CFF
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Rogue.C746891
MAXmalware (ai score=60)
VBA32BScope.Trojan.Schoolboy
MalwarebytesMalware.AI.2438449222
TrendMicro-HouseCallTROJ_GEN.R002C0PL621
RisingTrojan.Generic@ML.84 (RDMK:1pHBFV+hCOjta3r8a3kkOA)
YandexTrojan.GenAsa!rDInZrDhv/Y
SentinelOneStatic AI – Malicious PE
eGambitPE.Heur.InvalidSig
FortinetRiskware/Kraddare
AVGWin32:Malware-gen
PandaTrj/Genetic.gen
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.2438449222?

Malware.AI.2438449222 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment