Malware

What is “Malware.AI.299744275”?

Malware Removal

The Malware.AI.299744275 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.299744275 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.299744275?


File Info:

name: 433379204FA67E767F2A.mlw
path: /opt/CAPEv2/storage/binaries/b9ebe1636524f620da43c0d177973db4a50adb07f02a15ad925b02ad9ade9b20
crc32: D58C0642
md5: 433379204fa67e767f2a5893f972f440
sha1: 48dcf484b344d198a051b013ea53b9e160a65323
sha256: b9ebe1636524f620da43c0d177973db4a50adb07f02a15ad925b02ad9ade9b20
sha512: 4197e9c23a1a3da5a0615ddee19d12b632cd093ed85ccc33b58289ac913ce31d30e09e4f35a3a861bbb8c97c5a4686b805c4300611328b93fd4c647bd16c55b7
ssdeep: 3072:rWzoZ3onpve6A74BTs99zbuFdJvnq6piuH:rWeo1a4B8z6FdJPq6piu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15C048F628970BB13E951093517E06BFB801D3C2F4BE5060A7CADDA5F3763D9A349F942
sha3_384: 1c627425cee35258e34cc9d1baaa11406200ec40e5fed155750adfaee8df8eeb78ff42993edba4c32a1ebe0b06753d2f
ep_bytes: 68c0914200e8f0ffffffcd0000000000
timestamp: 2019-04-26 10:28:09

Version Info:

0: [No Data]

Malware.AI.299744275 also known as:

BkavW32.AIDetectMalware
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MuldVMF.S21469993
SkyhighBehavesLike.Win32.Generic.ct
McAfeeGenericRXHC-SS!433379204FA6
MalwarebytesMalware.AI.299744275
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 005690671 )
K7GWTrojan ( 005690671 )
Cybereasonmalicious.4b344d
ArcabitTrojan.Zusy.D80534
VirITTrojan.Win32.VBUCornT.DRP
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.FNGV
APEXMalicious
ClamAVWin.Malware.Midie-6847893-0
KasperskyHEUR:Trojan.Win32.VB.gen
BitDefenderGen:Variant.Zusy.525620
NANO-AntivirusTrojan.Win32.Banker1.fnwqkb
SUPERAntiSpywareTrojan.Agent/Gen-Strictor
MicroWorld-eScanGen:Variant.Zusy.525620
AvastWin32:VB-AJKU [Trj]
TencentTrojan.Win32.VB.ko
TACHYONTrojan/W32.VB-Agent.188446.J
EmsisoftGen:Variant.Zusy.525620 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.MulDrop17.61497
VIPREGen:Variant.Zusy.525620
FireEyeGeneric.mg.433379204fa67e76
SophosMal/VB-AQT
IkarusTrojan.Crypt
JiangminTrojan.VB.aqyg
VaristW32/VB_Troj.J.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Wacatac.b
Kingsoftmalware.kb.a.992
MicrosoftTrojanDropper:Win32/Muldrop.V!MTB
ZoneAlarmHEUR:Trojan.Win32.VB.gen
GDataWin32.Trojan.VBClone.C
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R252862
BitDefenderThetaAI:Packer.1DDCF60A20
ALYacGen:Variant.Zusy.525620
MAXmalware (ai score=87)
VBA32SScope.Trojan.VB
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0DLP23
RisingTrojan.VBClone!1.E032 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureVirus.W32.GenericML.xnet
FortinetW32/VBClone.D!tr
AVGWin32:VB-AJKU [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.299744275?

Malware.AI.299744275 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment