Malware

Malware.AI.2666986446 (file analysis)

Malware Removal

The Malware.AI.2666986446 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2666986446 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.2666986446?


File Info:

name: 9A17AD1053774EDA05AE.mlw
path: /opt/CAPEv2/storage/binaries/bdf196d3fb641695ad5c5300263915db80e232348be612adf7151c5cea0b8dcd
crc32: 955865A3
md5: 9a17ad1053774eda05ae0d6895087de4
sha1: 5f000e547ec52efbc0cef5a15c78f5d214c7206a
sha256: bdf196d3fb641695ad5c5300263915db80e232348be612adf7151c5cea0b8dcd
sha512: 08e6149eded1c31bc7ee3c5a37ff41e2426c47395e52fa24cf730587079fb3d269fa8d1ff673f2ea7e8f33457cd6d1d612b15bec629bc80f2a21d1c7815a5a1c
ssdeep: 1536:k56M8cUaZNReEssgrZwp3CezonRWCn/vvbvxP8R6Znv82QYIPNEldFzY4F5mmOS:n3axOBrsCeG3vbvxYOvSPNEldFzp5mjS
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1CAC35A1273C1D97AC8E711318EB2BB9AE3B7EA244C3847173314271D9F752866C6929F
sha3_384: 43708db3c2fb09f333523d1054180bdbd0ce5849dd55bfa86cffe3295bccad12c160589069aad49830a182c4ecacd557
ep_bytes: 558bec538b5d08568b750c85f6578b7d
timestamp: 2024-02-04 20:31:02

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Sync Manager
FileVersion: 10.0.19041.1 (WinBuild.160101.0800)
InternalName: mobsync.dll
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: mobsync.dll
ProductName: Microsoft® Windows® Operating System
ProductVersion: 10.0.19041.1
Translation: 0x0409 0x04b0

Malware.AI.2666986446 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Loader.1907
MicroWorld-eScanGen:Variant.Zusy.539534
FireEyeGen:Variant.Zusy.539534
SkyhighArtemis
ALYacGen:Variant.Zusy.539534
Cylanceunsafe
SangforTrojan.Win32.Zusy.Vzhj
SymantecML.Attribute.HighConfidence
ClamAVWin.Downloader.Zusy-10022934-0
KasperskyUDS:Trojan.Win32.Loader.gen
BitDefenderGen:Variant.Zusy.539534
AvastWin32:TrojanX-gen [Trj]
EmsisoftGen:Variant.Zusy.539534 (B)
GoogleDetected
VIPREGen:Variant.Zusy.539534
SophosGeneric Reputation PUA (PUA)
IkarusTrojan.SuspectCRC
GDataGen:Variant.Zusy.539534
JiangminTrojan.Loader.bk
ArcabitTrojan.Zusy.D83B8E
ZoneAlarmUDS:Trojan.Win32.Loader.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.C5598171
McAfeeGenericRXAA-AA!9A17AD105377
MAXmalware (ai score=87)
MalwarebytesMalware.AI.2666986446
PandaTrj/Genetic.gen
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Zusy.539534!tr
AVGWin32:TrojanX-gen [Trj]
alibabacloudTrojan:Win/Zusy

How to remove Malware.AI.2666986446?

Malware.AI.2666986446 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment