Malware

Malware.AI.2460141933 information

Malware Removal

The Malware.AI.2460141933 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2460141933 virus can do?

  • Unconventionial binary language: Portuguese (Brazil)
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.2460141933?


File Info:

name: 355AA0BC0C5133A66FCC.mlw
path: /opt/CAPEv2/storage/binaries/c4e12f1fc9957a4405fe7cf8001c89b17a7cd4839479b990fc65fdce17d46093
crc32: 80ECC145
md5: 355aa0bc0c5133a66fcc4adb04bda132
sha1: b54ed23d699a6fbab8d9ecde464b2724d30a4dd5
sha256: c4e12f1fc9957a4405fe7cf8001c89b17a7cd4839479b990fc65fdce17d46093
sha512: 742349d75329f7f2884ec0306359ce5f1dcdc2f10a58252de8a0a397c7bc4ea2d56913b3b1b3676d44d228968ce5f2c7e5d49e1b0f027eec1128bcec6e7bbe1b
ssdeep: 768:EXeE0jEoEG+W6myFJRqZVvHH4zlKZwz/iScdNICsQn7eY3FLPgkU358jY:EL0jES6moRqLn4ZKZeS/7eY3xIbejY
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1A143E15DA36815FED0B3C7B448E2A3E07CAA74316B2697B3E315B02C69435004B797EB
sha3_384: 8d9e943ad102d0a08f251d686bfd387d73efb2569f55afe086bcece82b22b34d0002bf2504d41af52076eeb723fc15e6
ep_bytes: 807c2408010f85b901000060be007041
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: OstroSoft
FileDescription: SMTP Component For Visual Basic
FileVersion: 6.4.0.6
InternalName: OSSMTP
LegalCopyright:
LegalTrademarks:
OriginalFilename: OSSMTP.dll
ProductName: OstroSoft SMTP Component
ProductVersion: 6.4.0.6
Comments: Using of this component for unlawful activities is STRICTLY PROHIBITED. Full text of license agreement, governing the usage of this component, is available at http://www.ostrosoft.com/smtp_license.txt
Translation: 0x0416 0x04e4

Malware.AI.2460141933 also known as:

LionicTrojan.MSIL.Agent.7!c
MicroWorld-eScanGen:Variant.Jaik.153468
FireEyeGen:Variant.Jaik.153468
SkyhighBehavesLike.Win32.Dropper.qc
ALYacGen:Variant.Jaik.153468
Cylanceunsafe
SangforBanker.Win32.Agent.V6xv
AlibabaTrojanBanker:MSIL/Banker.7929defc
K7GWTrojan ( 7000000f1 )
K7AntiVirusTrojan ( 7000000f1 )
SymantecTrojan.Gen.MBT
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Agent.AAFK
CynetMalicious (score: 100)
KasperskyTrojan-Banker.MSIL.Agent.ez
BitDefenderGen:Variant.Jaik.153468
NANO-AntivirusTrojan.Win32.Banker.cyjvvi
AvastWin32:Banker-KEJ [Trj]
TencentMsil.Trojan-Banker.Agent.Yylw
EmsisoftGen:Variant.Jaik.153468 (B)
F-SecureTrojan.TR/Spy.Banker.KEJ.3
VIPREGen:Variant.Jaik.153468
SophosMal/Generic-S
GDataGen:Variant.Jaik.153468
WebrootW32.Infostealer.Zeus
GoogleDetected
AviraTR/Spy.Banker.KEJ.3
Antiy-AVLTrojan[Banker]/MSIL.Agent
XcitiumMalware@#1twkxg56qii6i
ArcabitTrojan.Jaik.D2577C
ZoneAlarmTrojan-Banker.MSIL.Agent.ez
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win32.Banker.R64648
McAfeeArtemis!355AA0BC0C51
MAXmalware (ai score=85)
VBA32TrojanBanker.MSIL.Agent
MalwarebytesMalware.AI.2460141933
PandaTrj/Chgt.AD
RisingTrojan.Agent!8.B1E (CLOUD)
YandexTrojan.GenAsa!d41mv1AZv+4
IkarusWin32.Banker.JAF
MaxSecureTrojan.Malware.73619913.susgen
AVGWin32:Banker-KEJ [Trj]
DeepInstinctMALICIOUS

How to remove Malware.AI.2460141933?

Malware.AI.2460141933 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment