Malware

Malware.AI.2904297788 removal tips

Malware Removal

The Malware.AI.2904297788 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2904297788 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.2904297788?


File Info:

name: 4BCFB470175CA32C0C9B.mlw
path: /opt/CAPEv2/storage/binaries/bb9552c9a8500eb33b5fdbf5479d2d91c3597c7220c009fe87c0a8fb7a7521f7
crc32: DF9CF376
md5: 4bcfb470175ca32c0c9bab3e7d346c09
sha1: d611bc8a0c3125da7dbbd1bf40c04b753b0b02e9
sha256: bb9552c9a8500eb33b5fdbf5479d2d91c3597c7220c009fe87c0a8fb7a7521f7
sha512: f111bd12fdbf188a34a9d97f3fe979339732e48f62ff9f4a6389313ab36f5da27127cf6027df30c8d9e7cd03a02487a4baf5bb866ee598c997a1592c46c86919
ssdeep: 1536:EeEcNEzvsWjcdqS4BBFy48zGn82/tpi4XYcqXytuV:l7NmnyBzGnz/tpFozt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FBD36C0676D54172D4B7033218B48691AF6EBDF21AB4CE967FC8114F0BB2AD05B39B72
sha3_384: 75b6421e40998aefe5501920a1120b932cd3c4c39f814ff8575917e1ac62caa0657ac3474f6d0a3fe252d08a28691bc1
ep_bytes: 7dd48b45d88b55e03bf90f8dbf000000
timestamp: 2011-03-27 13:45:31

Version Info:

0: [No Data]

Malware.AI.2904297788 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.98613
ClamAVWin.Malware.Zusy-9957983-0
FireEyeGeneric.mg.4bcfb470175ca32c
ALYacTrojan.GenericKDZ.98613
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004bcce41 )
AlibabaVirus:Win32/Agent.93ef95f6
K7GWTrojan ( 004bcce41 )
ArcabitTrojan.Generic.D18135
BitDefenderThetaGen:NN.ZexaF.36250.iWZ@au9yu@g
CyrenW32/Agent.FWC.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/Agent.NCK
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKDZ.98613
NANO-AntivirusVirus.Win32.Gen.ccmw
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
AvastWin32:Kryptik-IVQ [Trj]
TencentWin32.Virus.Agent.Osmw
EmsisoftTrojan.GenericKDZ.98613 (B)
VIPRETrojan.GenericKDZ.98613
TrendMicroTROJ_GEN.R03BC0DF323
McAfee-GW-EditionBehavesLike.Win32.Generic.ct
Trapminemalicious.moderate.ml.score
SophosMal/EncPk-FX
IkarusTrojan.Agent
JiangminTrojan.GenericML.aof
Antiy-AVLTrojan/Win32.Prepscram
MicrosoftTrojan:Win32/Prepscram.A!MTB
GDataWin32.Trojan.Agent.AXD
GoogleDetected
Acronissuspicious
McAfeeGenericRXVS-GX!4BCFB470175C
MAXmalware (ai score=89)
MalwarebytesMalware.AI.2904297788
TrendMicro-HouseCallTROJ_GEN.R03BC0DF323
RisingVirus.CTS!1.DA0D (CLASSIC)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.FWC!tr
AVGWin32:Kryptik-IVQ [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.2904297788?

Malware.AI.2904297788 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment