Malware

Malware.AI.2793522615 malicious file

Malware Removal

The Malware.AI.2793522615 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2793522615 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.2793522615?


File Info:

name: B54BC6455B17DAC1A83D.mlw
path: /opt/CAPEv2/storage/binaries/2d550fc2f42192c383f374204481cf78199a35ef48d48aa565a36099734f9eb2
crc32: 8B8B04DB
md5: b54bc6455b17dac1a83d2ffce991c53c
sha1: 6a955bbab06a069fe0b73af934cede3197e4a7ed
sha256: 2d550fc2f42192c383f374204481cf78199a35ef48d48aa565a36099734f9eb2
sha512: 534d7e2ef7abf2ecf3b239ae858f7c972caa3f123f96fcb68720b50df0ea981cf69415195cca91c89bd09ed34ef829c064b159c3686821908d8a266ab7a02d35
ssdeep: 98304:sntlp6666666666666666666666666666666x666666666666666fwwwwwwwwwwp:BoleliaG88LNxH8oL8nevNA4PFc3wtpf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19E369F81F3616134E8BBAAB12D3C6B5609183D67AB30C6DF5AD83C751E708C21A3DB57
sha3_384: 5748d11d9b359425843d87b67cfc5df598f0b40e70684a8af83f6432269b4e78b9579579a08a994e5de3888b4d734320
ep_bytes: e816050000e97afeffffa12c50450053
timestamp: 2024-01-29 12:07:30

Version Info:

CompanyName: Opera Software
FileDescription: Opera Installer
FileVersion: 106.0.4998.70
InternalName: Opera
LegalCopyright: Copyright Opera Software 2024
ProductName: Opera Installer
ProductVersion: 106.0.4998.70
Translation: 0x0409 0x04b0

Malware.AI.2793522615 also known as:

BkavW32.Common.3FCC1EBC
LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Lazy.492972
FireEyeGeneric.mg.b54bc6455b17dac1
SkyhighBehavesLike.Win32.Generic.rh
McAfeeArtemis!B54BC6455B17
MalwarebytesMalware.AI.2793522615
VIPREGen:Variant.Lazy.492972
BitDefenderThetaGen:NN.ZexaF.36802.@F2@aKfvP5pi
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
TrendMicro-HouseCallTROJ_GEN.R03BH09CF24
BitDefenderGen:Variant.Lazy.492972
EmsisoftGen:Variant.Lazy.492972 (B)
GoogleDetected
Trapminemalicious.moderate.ml.score
SophosGeneric ML PUA (PUA)
VaristW32/ABRisk.ZCLN-8133
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.Possiblethreat
ArcabitTrojan.Lazy.D785AC
GDataGen:Variant.Lazy.492972
AhnLab-V3Malware/Win.Generic.C5570842
ALYacGen:Variant.Lazy.492972
Cylanceunsafe
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Lazy

How to remove Malware.AI.2793522615?

Malware.AI.2793522615 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment