Malware

Malware.AI.2744045027 (file analysis)

Malware Removal

The Malware.AI.2744045027 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2744045027 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.2744045027?


File Info:

name: 47EBE9F8F5F73F07D456.mlw
path: /opt/CAPEv2/storage/binaries/2ed3e37608e65be8b6e8c59f8c93240bd0efe9a60c08c21f4889c00eb6082d74
crc32: A7682D3C
md5: 47ebe9f8f5f73f07d456ec12bb49c75d
sha1: 45672dc9b2eb6972bef8f930505f0ad57550ca4c
sha256: 2ed3e37608e65be8b6e8c59f8c93240bd0efe9a60c08c21f4889c00eb6082d74
sha512: b8f25bf3a83b8c2a715fdfd6efbde53588415a84c2e87308e24aa1eb4783db39dee0f0ec2f5701b8bd848dfdec062557ff51c729264ffc1b2b01b51a3098903b
ssdeep: 24576:9ypcVmmyK+Y8J0r1dpvZlGhiUTPQOMoezwFnKS1yb0zrs7HjeAzgjJENrud9qcju:ecV8Ytr1dhrwierOjeAzBruTqQt02+
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1AD06F950E8FB40FAF6075A3028ABA16FA3302D159B39EEC7C6547E47E4776D1013366A
sha3_384: ecb23e6660b55409d104b54462220f5b16efe8978597882905d03135736d8f2f05be804fd942f3559292b1293db2d30e
ep_bytes: e9abd8ffffcccccccccccccccccccccc
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Malware.AI.2744045027 also known as:

BkavW32.Common.7FE124FD
LionicTrojan.Win32.Snake.trn9
ElasticWindows.Ransomware.Snake
MicroWorld-eScanTrojan.GenericFCA.Agent.90330
ClamAVWin.Malware.Agent-8236517-0
FireEyeTrojan.GenericFCA.Agent.90330
CAT-QuickHealRansom.Snake.S13954503
SkyhighTrojan-Ransom.h
McAfeeTrojan-Ransom.h
MalwarebytesMalware.AI.2744045027
ZillyaTrojan.Filecoder.Win32.14329
SangforRansom.Win32.Save.a
K7AntiVirusRansomware ( 0056897f1 )
AlibabaRansom:Win32/Snake.616a9197
K7GWRansomware ( 0056897f1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.GenericFCA.Agent.D160DA
SymantecRansom.Gen
ESET-NOD32a variant of WinGo/Filecoder.Snake.A
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Snake.a
BitDefenderTrojan.GenericFCA.Agent.90330
NANO-AntivirusTrojan.Win32.Filecoder.hkdkgx
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.115ae8ab
TACHYONRansom/W32.Snake.3900928
SophosTroj/Ransom-GAT
F-SecureTrojan.TR/Ransom.zkvfs
DrWebTrojan.Siggen9.44911
VIPRETrojan.GenericFCA.Agent.90330
TrendMicroRansom.Win32.EKANS.B
EmsisoftTrojan.GenericFCA.Agent.90330 (B)
IkarusTrojan-Ransom.Snake
WebrootW32.Ransom.Snake
GoogleDetected
AviraTR/Ransom.zkvfs
Antiy-AVLTrojan[Ransom]/Win32.Turla
XcitiumMalware@#1fo4qpjzegd6f
MicrosoftRansom:Win32/Snake!MSR
ViRobotTrojan.Win.Z.Snake.3900928
ZoneAlarmTrojan-Ransom.Win32.Snake.a
GDataTrojan.GenericFCA.Agent.90330
VaristW32/ABRansom.QOWH-1541
AhnLab-V3Trojan/Win32.SnakeRansom.R335473
VBA32TrojanRansom.Snake
ALYacTrojan.Ransom.Filecoder
MAXmalware (ai score=100)
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallRansom.Win32.EKANS.B
RisingTrojan.Generic@AI.83 (RDMK:ZZrGyeAtLev3EnJ34sMveg)
YandexTrojan.Filecoder!Yi+LClvZRcU
MaxSecureTrojan.Malware.102149137.susgen
FortinetW32/Ekans.F82A!tr.ransom
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.2744045027?

Malware.AI.2744045027 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment