Malware

What is “Malware.AI.298560730”?

Malware Removal

The Malware.AI.298560730 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.298560730 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.298560730?


File Info:

name: 597A950D1B24B0BEAC06.mlw
path: /opt/CAPEv2/storage/binaries/ea608835c5055130c4b1618f09dc10e0a18d1e61492514151105c89740f06c1b
crc32: 530F9838
md5: 597a950d1b24b0beac06dccd18495818
sha1: 738266e954365888e50d3627df718e661979b908
sha256: ea608835c5055130c4b1618f09dc10e0a18d1e61492514151105c89740f06c1b
sha512: 24ed1b64d4bf75854a83f877fac713ad7757b49a6df313047d0a3f055cd85fca744d2d53615237804bbbf5c15dec1c6294a98213ba16517cab9b19d494b75af9
ssdeep: 3072:QOYFbCxE+BhOyt1Ce4rhMC/qLTnLRIa+31oHqD4+qAsScsGbzAqLTnLRIa+31oHm:bt++Pn6R1M+qHnLaaQ/LqOqHnLaaQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AF2408F6B3444340E46115B485FB887213E3ADDB4DB29EA93E0876D93CF4763AC61A4B
sha3_384: f253149422217e8401763f3f29d41459a521ab12a58fefbe168c791397b8871e0247fbc834d41c0d65e781eb772477f0
ep_bytes: ff250020400000000000000000000000
timestamp: 2019-08-21 01:19:20

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Keygen
FileVersion: 1.0.0.0
InternalName: Keygen.exe
LegalCopyright: Copyright © 2018
LegalTrademarks:
OriginalFilename: Keygen.exe
ProductName: Keygen
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.298560730 also known as:

BkavW32.Common.1E5875A8
LionicRiskware.Win32.Perseus.1!c
tehtrisGeneric.Malware
FireEyeTrojan.GenericKD.68961818
McAfeeArtemis!597A950D1B24
Cylanceunsafe
ZillyaTrojan.Keygen.Win32.11343
SangforTrojan.Win32.Keygen.V0r3
CrowdStrikewin/grayware_confidence_100% (W)
K7GWUnwanted-Program ( 0058c9671 )
K7AntiVirusUnwanted-Program ( 0058c9671 )
ArcabitTrojan.Generic.D41C461A
BitDefenderThetaGen:NN.ZemsilF.36722.nq0@aORodCi
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Keygen.DI potentially unsafe
APEXMalicious
BitDefenderTrojan.GenericKD.68961818
MicroWorld-eScanTrojan.GenericKD.68961818
AvastWin32:Malware-gen
SophosGeneric Reputation PUA (PUA)
VIPRETrojan.GenericKD.68961818
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.68961818 (B)
WebrootPua.Hax
Antiy-AVLRiskWare/MSIL.KeyGen
GDataTrojan.GenericKD.68961818
AhnLab-V3Unwanted/Win32.KeyGen.C3272468
ALYacTrojan.GenericKD.68961818
MAXmalware (ai score=81)
MalwarebytesMalware.AI.298560730
TrendMicro-HouseCallTROJ_GEN.R002H09HU23
RisingPUA.Keygen!8.3EB (CLOUD)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Application
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.298560730?

Malware.AI.298560730 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment