Malware

What is “Malware.AI.2539750286”?

Malware Removal

The Malware.AI.2539750286 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2539750286 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.2539750286?


File Info:

name: 162CA580983453D060BF.mlw
path: /opt/CAPEv2/storage/binaries/9ae65d47abbff1cb3df908b26e3fc54a38694802be6bfe239cbabdb0d4dc8aca
crc32: 381CC6DE
md5: 162ca580983453d060bf68ebc749e566
sha1: e56a031a98ccc8d7b36cf1cbc6827a6bcdcec4dc
sha256: 9ae65d47abbff1cb3df908b26e3fc54a38694802be6bfe239cbabdb0d4dc8aca
sha512: d0bb55cc274560ae99ce9f0a7c11ca934a4d7a8c96787b2c682afd5fe94da19dac41b71c3749d05993940936c7debc3dc8f79d1013a416fe83d0b60e6167bc34
ssdeep: 98304:Wd0nJ4Ac/4VdIRlQMPcgg8hg8btYIzCMGayYwOT7e:60J4DRlQINh5YjE7e
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E01633916AA1B476C0221B75BE07FDF523270EE11979A300ADA0FD9F3E7F5521213B92
sha3_384: 756b9a814fbf4858131f7c0ec039314151faa9fa740121bf4dff9a4aee37d2555cf730a47641edd161d731b699a28a78
ep_bytes: 558bec83c4cc53565733c08945f08945
timestamp: 2023-11-05 16:34:10

Version Info:

Comments: This installation was built with Inno Setup: http://www.innosetup.com
CompanyName:
FileDescription: VideoPRO Setup
FileVersion:
LegalCopyright:
Translation: 0x0409 0x04e4

Malware.AI.2539750286 also known as:

BkavW32.AIDetectMalware
MalwarebytesMalware.AI.2539750286
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
APEXMalicious
KasperskyVHO:Trojan-Proxy.Win32.Windigo.gen
F-SecureHeuristic.HEUR/AGEN.1332256
IkarusTrojan-Dropper.Win32.Agent
JiangminTrojan.Injuke.sus
AviraHEUR/AGEN.1332256
ZoneAlarmVHO:Trojan-Proxy.Win32.Windigo.gen
AVGOther:Malware-gen [Trj]
AvastOther:Malware-gen [Trj]

How to remove Malware.AI.2539750286?

Malware.AI.2539750286 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment