Malware

Malware.AI.2474159969 removal

Malware Removal

The Malware.AI.2474159969 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2474159969 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.2474159969?


File Info:

name: 8FF95BCA1BF1F20D1166.mlw
path: /opt/CAPEv2/storage/binaries/ff86dd90b89dc184d814f8155ca081fe4d09ed400c96e5da99e214512fdaf681
crc32: 186B552B
md5: 8ff95bca1bf1f20d1166622679111e84
sha1: 6a793a075e7f560bd56a89bbe57709e5253f3ae5
sha256: ff86dd90b89dc184d814f8155ca081fe4d09ed400c96e5da99e214512fdaf681
sha512: 6b7dda027871de5a9f089f2bc1450bd2c5a509d61a46d8e19a29fea90d5cbf344b7db2c12549f286c0e415d68ff62fb8ae9e3760fbfde2ed5d96112b3ddd819e
ssdeep: 6144:A/2kdbo8EZG9xIBc6AY4qLfwlPOX7waI1EOw:AekdNEEIBbzPfea
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13C249D2137D2C0FBD6AF5BB8F449A23127A8653875728507B36E8B6C3F34394DB161A1
sha3_384: 1a50986126c3b7acac60332edec3944dfa5f1b692bcb52473a5e143705ab0b5e8bb7b52a97a1aac323e72a9188aa41ea
ep_bytes: e826070000e9a2fdffffccff25101200
timestamp: 2019-03-04 18:13:06

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft .NET Framework IL assembler
FileVersion: 2.0.50727.9136 (WinRelRS6.050727-9100)
InternalName: ilasm.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: ilasm.exe
ProductName: Microsoft® .NET Framework
ProductVersion: 2.0.50727.9136
Comments: Flavor=Retail
Translation: 0x0409 0x04b0

Malware.AI.2474159969 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Babar.4!c
MicroWorld-eScanGen:Variant.Babar.17067
FireEyeGen:Variant.Babar.17067
McAfeeArtemis!8FF95BCA1BF1
MalwarebytesMalware.AI.2474159969
K7AntiVirusTrojan ( 00571aa61 )
AlibabaTrojan:Win32/GenKryptik.0cbb4298
K7GWTrojan ( 00571aa61 )
Cybereasonmalicious.a1bf1f
ESET-NOD32a variant of Win32/GenKryptik.EUQU
BitDefenderGen:Variant.Babar.17067
AvastWin32:Trojan-gen
TencentWin32.Trojan.Babar.Egyr
Ad-AwareGen:Variant.Babar.17067
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Variant.Babar.17067 (B)
MaxSecureTrojan.Malware.121218.susgen
AviraHEUR/AGEN.1136373
MAXmalware (ai score=88)
GridinsoftRansom.Win32.Gen.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Babar.17067
ALYacGen:Variant.Babar.17067
CylanceUnsafe
IkarusTrojan.Win32.Krypt
FortinetW32/CoinMiner.3E08!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.2474159969?

Malware.AI.2474159969 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment