Malware

Malware.AI.410631799 malicious file

Malware Removal

The Malware.AI.410631799 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.410631799 virus can do?

  • Uses Windows utilities for basic functionality
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • A ping command was executed with the -n argument possibly to delay analysis
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk

How to determine Malware.AI.410631799?


File Info:

name: E2C0B4C969486B3548B1.mlw
path: /opt/CAPEv2/storage/binaries/6846eb236eeb09019e12e6b00a0f438c1e45cfb107c8789150c56d9cc20416e5
crc32: 42453103
md5: e2c0b4c969486b3548b10dab56fb5361
sha1: be6cefcf4d562b47243bc503da78681ff54edba8
sha256: 6846eb236eeb09019e12e6b00a0f438c1e45cfb107c8789150c56d9cc20416e5
sha512: e0ef94ff38facd9667340997937ea327ae6a995f330ef912a9bbb2707fdc2e7ca29f61473aee43618352ce71d61adc745c778e98497aa5c5e467dd617d2e1ec8
ssdeep: 1536:T7fbN3eEDhDPA/pICdUkbBtW7upvaLU0bI5taxKo0IOlnToIfIwSxEF2GH3MOD:P7DhdC6kzWypvaQ0FxyNTBfIxxEFNz
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T10CA37D42B3E102F7F9F1453110B6622F9B36A638976498DBC74C2E525983BD0A63D3F9
sha3_384: a5a2cc36efc43d6f96525c7992dc8d0e7b457ab34c223a7f1010dcf9e2f537f7f128edf6e96eb503c2fba5c9f31a1762
ep_bytes: 68ac00000068000000006868804100e8
timestamp: 2019-07-30 08:52:45

Version Info:

ProductVersion: 7.12.133
ProductName: Firetrust MailWasher Pro
LegalCopyright: 1418
Translation: 0x0000 0x04e4

Malware.AI.410631799 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
FireEyeGeneric.mg.e2c0b4c969486b35
SkyhighBehavesLike.Win32.RealProtect.ch
McAfeeRDN/Generic.hbg
Cylanceunsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderThetaGen:NN.ZexaF.36792.gu0@am@tfPk
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ClamAVWin.Trojan.Generic-10011119-0
AvastWin32:Malware-gen
TencentTrojan.Win32.Redcap.hg
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GoogleDetected
MalwarebytesMalware.AI.410631799
TrendMicro-HouseCallTROJ_GEN.R002H06E823
RisingTrojan.Generic@AI.100 (RDML:uF7FqqR8R3z+fMx1D25yNQ)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
Cybereasonmalicious.f4d562
DeepInstinctMALICIOUS

How to remove Malware.AI.410631799?

Malware.AI.410631799 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment