Malware

Malware.AI.258846993 (file analysis)

Malware Removal

The Malware.AI.258846993 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.258846993 virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.258846993?


File Info:

crc32: 924DDEF1
md5: fe060a88c8a1a5314f4b454f8f5b5aa1
name: FE060A88C8A1A5314F4B454F8F5B5AA1.mlw
sha1: 850be49600c7da64e46b160303c79a1fc49d5400
sha256: fc1a6eca6d715d039120d82cca82e593263b0b2b1371997c13d7591bd35cdb51
sha512: 93539ef6c9a2fd48c1830e7a3afe5d3cd68d14850082e5f9edda1b09b4e7b5621e70757540b9aa234e77c7a1d9e86f14e026d4b081ed71535f164cdd2ef7e71e
ssdeep: 49152:o0zFvUSqOnBsXWwpZgiKhPAHViZNIysioc3A+dn:o0zF8SqOnBsXW8giaPiiHLsioNin
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2008-2013 NVIDIA Corporation
InternalName: PhysXCore_FC46_GPU
FileVersion: 2, 8, 3, 46
CompanyName: NVIDIA Corporation
ProductName: PhysXCore Dynamic Link Library
ProductVersion: 2, 8, 3, 46
FileDescription: PhysXCore Dynamic Link Library
OriginalFilename: PhysXCore.dll
Translation: 0x0409 0x04b0

Malware.AI.258846993 also known as:

K7AntiVirusTrojan ( 0057d3a01 )
Elasticmalicious (high confidence)
ALYacTrojan.GenericKD.36984270
CylanceUnsafe
SangforInfostealer.MSIL.Reline.gen
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaTrojanPSW:MSIL/Kryptik.eaee69f6
K7GWTrojan ( 0057d3a01 )
Cybereasonmalicious.600c7d
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ABED
AvastWin32:BackdoorX-gen [Trj]
KasperskyHEUR:Trojan-PSW.MSIL.Reline.gen
BitDefenderTrojan.GenericKD.36984270
MicroWorld-eScanTrojan.GenericKD.36984270
Ad-AwareTrojan.GenericKD.36984270
SophosMal/Generic-R
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R023C0WEU21
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.fe060a88c8a1a531
EmsisoftTrojan.GenericKD.36984270 (B)
WebrootW32.Trojan.Gen
eGambitPE.Heur.InvalidSig
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D23455CE
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmHEUR:Trojan-PSW.MSIL.Reline.gen
GDataTrojan.GenericKD.36984270
AhnLab-V3Malware/Win.Generic.C4496402
McAfeeArtemis!FE060A88C8A1
MAXmalware (ai score=89)
MalwarebytesMalware.AI.258846993
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R023C0WEU21
RisingTrojan.Kryptik!8.8 (CLOUD)
IkarusTrojan.MSIL.Crypt
FortinetMSIL/Kryptik.ABED!tr
AVGWin32:BackdoorX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.258846993?

Malware.AI.258846993 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment