Malware

Should I remove “Malware.AI.2458846082”?

Malware Removal

The Malware.AI.2458846082 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2458846082 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Presents an Authenticode digital signature
  • Possible date expiration check, exits too soon after checking local time
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • Anomalous binary characteristics

How to determine Malware.AI.2458846082?


File Info:

name: 81F65AB860583CC18338.mlw
path: /opt/CAPEv2/storage/binaries/49cbd2a77f854f124a76738402b48e4dfacbba38493473fb28ca9c76eead7cc2
crc32: 52B3FDFB
md5: 81f65ab860583cc18338fd22dbceffc4
sha1: 4cc7ab3a1a7427840a4f9b56d93d17e621639e9e
sha256: 49cbd2a77f854f124a76738402b48e4dfacbba38493473fb28ca9c76eead7cc2
sha512: e968a16d00b31bf53c63adab14e9e8cccd0b37f2830da4062e7e2405924c63584dfea49b9606749036f77a251e4914e182897f890e5c8041b0819fa39cb2b580
ssdeep: 3072:sLp+mpINRBwCUDfeh+DAxxWQuWkhQOuvg:s9LpivMzehw5Grv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E0E37C1237D0C071F9B6023149B59B61593EFD728BB485DBB398471E19B07D0AB3ABA3
sha3_384: 5879774327e912d546560da2584bfbdd637d65f22d44159b1f6b3ab62f8f4bd5dba51121eba9943cf8b8b90d17553bc0
ep_bytes: e8bc5a0000e97ffeffffcccccc8b4c24
timestamp: 2016-07-07 12:30:08

Version Info:

CompanyName: Mail.Ru
FileDescription: Mail.Ru Launcher
FileVersion: 3.6.0.6
InternalName: launcher
LegalCopyright: Copyright 2015
OriginalFilename: launcher.exe
ProductName: Mail.Ru Launcher
ProductVersion: 3.6.0.6
Comments:
Translation: 0x0409 0x04b0

Malware.AI.2458846082 also known as:

Elasticmalicious (high confidence)
DrWebAdware.StartPage.42
MicroWorld-eScanGen:Variant.Application.Agent.6
FireEyeGeneric.mg.81f65ab860583cc1
ALYacGen:Variant.Application.Agent.6
SangforTrojan.Win32.Save.a
K7AntiVirusUnwanted-Program ( 00587ee01 )
K7GWUnwanted-Program ( 00587ee01 )
Cybereasonmalicious.860583
CyrenW32/S-e83a6442!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32Win32/MailRu.J potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R002C0PKR21
Kasperskynot-a-virus:UDS:AdWare.Win32.Machaer
BitDefenderGen:Variant.Application.Agent.6
NANO-AntivirusTrojan.Win32.MailRu.enfiqs
SUPERAntiSpywarePUP.MailRU/Variant
AvastWin32:PUP-gen [PUP]
Ad-AwareGen:Variant.Application.Agent.6
EmsisoftApplication.AdMail (A)
ComodoApplication.Win32.MailRu.BS@6ku3o6
TrendMicroTROJ_GEN.R002C0PKR21
McAfee-GW-EditionGenericRXNI-OL!81F65AB86058
SophosMail.ru Downloader (PUA)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Application.Agent.6
JiangminTrojan.Reflo.a
MaxSecureTrojan.Malware.74285186.susgen
MAXmalware (ai score=72)
ArcabitTrojan.Application.Agent.6
MicrosoftProgram:Win32/Wacapew.C!ml
CynetMalicious (score: 100)
AhnLab-V3PUP/Win.MailRu.X2108
McAfeeGenericRXNI-OL!81F65AB86058
VBA32Adware.StartPage
MalwarebytesMalware.AI.2458846082
RisingPUF.MailRu!1.A9B5 (CLASSIC)
IkarusPUA.MailRu
FortinetW32/MailRu.M!tr
AVGWin32:PUP-gen [PUP]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.2458846082?

Malware.AI.2458846082 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment