Malware

What is “Malware.AI.2474690740”?

Malware Removal

The Malware.AI.2474690740 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2474690740 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.2474690740?


File Info:

name: B4E67D1A757C7FBD6068.mlw
path: /opt/CAPEv2/storage/binaries/7b7a4352a070e245d5478d8bf3d29e864f8184677de815c088df8be8affa77a7
crc32: 83DBF32E
md5: b4e67d1a757c7fbd6068f77ff39888fe
sha1: 60844b169f6cf0f3576a6502f22ef935f2c7794f
sha256: 7b7a4352a070e245d5478d8bf3d29e864f8184677de815c088df8be8affa77a7
sha512: 4d5a5b60b97373212a1401ea343271fa61f16c5b330fc1c4e63197aa8641c1a0cc36be64e23eed694d220459b75ac3d90ffa33c8e165b7b43e3c57a92bd0b5af
ssdeep: 1536:L7fbN3eEDhDPA/pICdUkbBtW7upvaLU0bI5taxKo0IOlnToIfCwGO2:H7DhdC6kzWypvaQ0FxyNTBfCZ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T166937D41F3E202F7E6F2053100A6716F973663389764A8DBC74C2E529913AD5A63D3F9
sha3_384: 4e48581d6532bbf21ab3754b1c4ab3f2cf6e70c11e3300d54323d263486145fde1b8e6bc43bd8e6278a2927619f167ef
ep_bytes: 68ac00000068000000006868804100e8
timestamp: 2019-07-30 08:52:45

Version Info:

0: [No Data]

Malware.AI.2474690740 also known as:

BkavW32.AIDetectMalware
CyrenCloudW32/Agent.CRE.gen!Eldorado
LionicTrojan.Win32.Generic.4!c
FireEyeGeneric.mg.b4e67d1a757c7fbd
CAT-QuickHealTrojan.GenericPMF.S18349505
SkyhighBehavesLike.Win32.RealProtect.nh
McAfeeRDN/Generic.dx
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0052796d1 )
AlibabaTrojan:Win32/Generic.19b43260
K7GWTrojan ( 0052796d1 )
CrowdStrikewin/malicious_confidence_60% (W)
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ClamAVWin.Trojan.Generic-10011119-0
TACHYONTrojan-Dropper/W32.Agent.93696.AO
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
VaristW32/Agent.CRE.gen!Eldorado
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C5251139
MalwarebytesMalware.AI.2474690740
TrendMicro-HouseCallTROJ_GEN.R002H0CL823
RisingTrojan.Generic@AI.99 (RDML:onPk3f4QoykXqDXy1SrPIg)
MaxSecureTrojan.Malware.3411146.susgen
FortinetW32/PossibleThreat
Cybereasonmalicious.69f6cf
DeepInstinctMALICIOUS

How to remove Malware.AI.2474690740?

Malware.AI.2474690740 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment