Malware

Malware.AI.2490640963 removal tips

Malware Removal

The Malware.AI.2490640963 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2490640963 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Malware.AI.2490640963?


File Info:

name: 5B32869799FB67451EEC.mlw
path: /opt/CAPEv2/storage/binaries/8afe70493d939bcda5616e0d04af340f0577b2a7e63bdc25187008202ee5ad25
crc32: CC2AEE6D
md5: 5b32869799fb67451eec8ae67432c3ba
sha1: 0513fd32e25f46722aaaaa0f239cf38e9d31edf5
sha256: 8afe70493d939bcda5616e0d04af340f0577b2a7e63bdc25187008202ee5ad25
sha512: e30f49fc9f8d8e0c17de1510604e13e704d520c7d7f8a8fa6fddf92925eee20de60955993b2d97e9b956231d76f6821a8e8f588f456a26697d11a2ac287cffac
ssdeep: 24576:9+C+8Xe8G1dA5WiJ5RHhAFXjaf6eNndoF:9+18O
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T17D05BFB8B6542CF5F57F423ECA56AC99937238124B96D5CF42A067C31E733A1EE26801
sha3_384: 013ecfe13e3418d06480521588314953765327a506795dc324519deea56d83d015e2ce7036a3271cafd3e27653ae97a8
ep_bytes: 4883ec28e85b0600004883c428e972fe
timestamp: 2021-11-21 05:04:42

Version Info:

0: [No Data]

Malware.AI.2490640963 also known as:

MicroWorld-eScanTrojan.GenericKD.38125672
FireEyeTrojan.GenericKD.38125672
McAfeeRDN/Generic.dx
AlibabaBackdoor:Win32/Cobalt.c0b4a2f9
K7GWTrojan ( 0058afe31 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win64/GenKryptik.FNPX
TrendMicro-HouseCallBackdoor.Win64.COBEACON.YXBKZZ
Paloaltogeneric.ml
KasperskyBackdoor.Win32.Cobalt.oo
BitDefenderTrojan.GenericKD.38125672
AvastWin64:Trojan-gen
Ad-AwareTrojan.GenericKD.38125672
SophosMal/Generic-S
TrendMicroBackdoor.Win64.COBEACON.YXBKZZ
McAfee-GW-EditionBehavesLike.Win64.Generic.cm
EmsisoftTrojan.GenericKD.38125672 (B)
GDataTrojan.GenericKD.38125672
MAXmalware (ai score=82)
GridinsoftRansom.Win64.Sabsik.sa
ArcabitTrojan.Generic.D245C068
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.38125672
MalwarebytesMalware.AI.2490640963
APEXMalicious
IkarusTrojan-Downloader.Win32.Injector
eGambitUnsafe.AI_Score_70%
FortinetPossibleThreat.MU
AVGWin64:Trojan-gen
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.2490640963?

Malware.AI.2490640963 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment