Malware

Malware.AI.2461477961 removal instruction

Malware Removal

The Malware.AI.2461477961 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2461477961 virus can do?

  • A file was accessed within the Public folder.
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Attempts to modify Internet Explorer’s start page
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • CAPE detected the shellcode patterns malware family
  • Uses suspicious command line tools or Windows utilities
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.2461477961?


File Info:

name: 54653CAE394FB1D87915.mlw
path: /opt/CAPEv2/storage/binaries/1e36097ec45de924183cf47d91bc932cd48b33546bb6b9b3e93e47e152be0bff
crc32: 448E4FCD
md5: 54653cae394fb1d879158bfe83c78aef
sha1: 613770f526194cc2613921baaf842b47172a3e9c
sha256: 1e36097ec45de924183cf47d91bc932cd48b33546bb6b9b3e93e47e152be0bff
sha512: 83ffa2a27a83882a54e59bdabf6c18eed730ce648d001bd3bcae26b76b5177b6b1d2fc7934024882876bf21834c3a21f247ca74ff6ab24fa6c89adc46b577a14
ssdeep: 1536:GpgpHzb9dZVX9fHMvG0D3XJYWyswAh2UOFyLvauPk0DRL1sCyLBTzDbuVNh:sgXdZt9P6D3XJYzHAh2zWNr51srLsVNh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16C93F12BA8C49DA7D6C2003206B3F376E73FCEC8425691132F583E39EAB0546C9193C6
sha3_384: 801a5640d385c279c964379c6f7d6ab3e72554ccae294d563d9fff244eb85761df7c0b108ceb687e4717fae126a63611
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-06-06 21:41:59

Version Info:

0: [No Data]

Malware.AI.2461477961 also known as:

BkavW32.AIDetectMalware
LionicTrojan.NSIS.Chindo.a!c
AVGNSIS:Downloader-AAW [Adw]
MicroWorld-eScanTrojan.Downloader.Hicrazyk.A
FireEyeTrojan.Downloader.Hicrazyk.A
SkyhighBehavesLike.Win32.Dropper.nc
ALYacTrojan.Downloader.Hicrazyk.A
Cylanceunsafe
ZillyaDownloader.Chindo.Win32.2880
SangforDownloader.Win32.Hicrazyk.Vg8l
K7AntiVirusRiskware ( 0040f0f51 )
AlibabaTrojanDownloader:Win32/Chindo.e8bd9a3f
K7GWRiskware ( 0040f0f51 )
Cybereasonmalicious.e394fb
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32NSIS/TrojanDownloader.Grinidou.H
CynetMalicious (score: 99)
APEXMalicious
ClamAVWin.Trojan.Hicrazyk-12
KasperskyTrojan-Downloader.Win32.Agent.hehh
BitDefenderTrojan.Downloader.Hicrazyk.A
NANO-AntivirusTrojan.Script.Agent.dserit
AvastNSIS:Downloader-AAW [Adw]
TencentWin32.Trojan-Downloader.Agent.Zmhl
EmsisoftTrojan.Downloader.Hicrazyk.A (B)
BaiduNSIS.Trojan-Downloader.Grinidou.a
F-SecureTrojan.TR/Hicrazyk.axsy
DrWebTrojan.StartPage.62192
VIPRETrojan.Downloader.Hicrazyk.A
TrendMicroTROJ_GEN.R002C0PBI24
SophosTroj/StartP-HV
AviraTR/Hicrazyk.axsy
Antiy-AVLTrojan[Downloader]/Win32.AdLoad.gen
KingsoftWin32.Troj.Undef.a
MicrosoftTrojan:Win32/Dynamer!ac
ArcabitTrojan.Downloader.Hicrazyk.A
ZoneAlarmTrojan-Downloader.Win32.Agent.hehh
GDataTrojan.Downloader.Hicrazyk.A
GoogleDetected
McAfeeArtemis!54653CAE394F
MAXmalware (ai score=100)
VBA32TrojanDownloader.Agent
MalwarebytesMalware.AI.2461477961
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PBI24
IkarusTrojan.Win32.Agent
FortinetW32/StartPage.NY!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)
alibabacloudTrojan[downloader]:Win/Grinidou.H

How to remove Malware.AI.2461477961?

Malware.AI.2461477961 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment