Malware

What is “Malware.AI.246113740”?

Malware Removal

The Malware.AI.246113740 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.246113740 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Spanish (Modern)
  • Attempts to remove evidence of file being downloaded from the Internet
  • Exhibits behavior characteristic of Nanocore RAT
  • Creates a hidden or system file
  • Attempts to identify installed AV products by installation directory
  • Creates a copy of itself
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Malware.AI.246113740?


File Info:

crc32: 23047C33
md5: 146e6ed67376a4727cbf2a6de66ba55e
name: 146E6ED67376A4727CBF2A6DE66BA55E.mlw
sha1: fb55c3d586434a7d62ef61f7ef23cc5ef9367c5d
sha256: 92f9a53f23eaca6e163ed07799a79dd4a7da7c43b7a3c7640ff6c649772c28e5
sha512: e087fdb9bb5ec6be8fd16a2ef4d0a609b8f45f790250907d2484d0d663dcccc0204adfe1470cbc32189dea7a0d672c940d2d31a6dbfd3ce0ee7c991ddda6436c
ssdeep: 12288:FmTqtf2tlusxOQ+ukRBWQk4fcDXp6AKoFq3viwuV5rZD74c/hFnlASPVrGCpi/C:F1d2msxHQR86r3hytZbZxyOvi/C
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.246113740 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005159041 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.17779
CynetMalicious (score: 85)
ALYacGen:Variant.Ransom.BTCWare.59
CylanceUnsafe
ZillyaBackdoor.NanoBot.Win32.13
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaBackdoor:MSIL/NanoBot.7c693606
K7GWTrojan ( 005159041 )
Cybereasonmalicious.67376a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DRCE
ZonerTrojan.Win32.59848
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.R8cyidk-9826697-0
KasperskyBackdoor.MSIL.NanoBot.ymo
BitDefenderGen:Variant.Ransom.BTCWare.59
NANO-AntivirusTrojan.Win32.AD.esgmzc
MicroWorld-eScanGen:Variant.Ransom.BTCWare.59
TencentWin32.Trojan.Inject.Auto
Ad-AwareGen:Variant.Ransom.BTCWare.59
SophosMal/Generic-S
ComodoMalware@#vl2c1yuc2xp5
BitDefenderThetaAI:Packer.52A9B95221
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionTrojan-FNQD!146E6ED67376
FireEyeGeneric.mg.146e6ed67376a472
EmsisoftGen:Variant.Ransom.BTCWare.59 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor.MSIL.qnp
AviraHEUR/AGEN.1121813
eGambitUnsafe.AI_Score_92%
MicrosoftBackdoor:MSIL/Noancooe.C
ArcabitTrojan.Ransom.BTCWare.59
AegisLabTrojan.MSIL.NanoBot.m!c
GDataGen:Variant.Ransom.BTCWare.59
AhnLab-V3Backdoor/Win32.NanoBot.C2113172
McAfeeTrojan-FNQD!146E6ED67376
MAXmalware (ai score=100)
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.246113740
PandaTrj/CI.A
RisingBackdoor.Noancooe!8.176 (CLOUD)
YandexTrojan.GenAsa!S9Jo7QoHVj8
IkarusTrojan.Crypt
FortinetW32/Injector.DRHL!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Nanocore.HwUB9psA

How to remove Malware.AI.246113740?

Malware.AI.246113740 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment