Malware

Malware.AI.46394249 removal instruction

Malware Removal

The Malware.AI.46394249 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.46394249 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.46394249?


File Info:

crc32: 68372F23
md5: 6ca44b663aa299f90d12cea32f04a75f
name: 6CA44B663AA299F90D12CEA32F04A75F.mlw
sha1: 2d3798d0759d4c2417305eb08ad299db082e660f
sha256: 15db540c3a16adf7a0cfd8e73944e962da25179487040308c651d732b5d31c41
sha512: 1032f68857c2295109fb3a60048d285fa6472f61720ac737566a8adb342fd65e7149e2ec1480d12a9ff3b7564979ca6fd96c3011b52991744b7e8c421d66b006
ssdeep: 6144:3jQ+ARgC/ZCMmRHdKzbeFjro7umUz6c8/gaCIyzGGHNsUG6Jm4dmE9:EvCMmhdkeFnoSlWc0gVIYGGHo6Jm4d9
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Lagoras Software Ltd.
InternalName: Giso
FileVersion: 3.3.25.69
CompanyName: Lagoras Software Ltd.
LegalTrademarks:
ProductName: Losebup Silihep
ProductVersion: 2.2.1.73
FileDescription:
OriginalFilename: giso.exe

Malware.AI.46394249 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 005380ab1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaAdware.Agent.Win32.138612
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 005380ab1 )
Cybereasonmalicious.63aa29
CyrenW32/DealPly.DO.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/DealPly.UN potentially unwanted
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Agent.gen
BitDefenderAdware.DealPly.2.Gen
NANO-AntivirusRiskware.Win32.DealPly.fjccwb
MicroWorld-eScanAdware.DealPly.2.Gen
TencentMalware.Win32.Gencirc.10c9d526
Ad-AwareAdware.DealPly.2.Gen
SophosGeneric PUA CN (PUA)
BitDefenderThetaAI:Packer.8847FDDD19
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.6ca44b663aa299f9
EmsisoftAdware.DealPly.2.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdware.Agent.adep
AviraHEUR/AGEN.1114815
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.2.Gen
AhnLab-V3Trojan/Win32.Xema.C181439
Acronissuspicious
McAfeeArtemis!6CA44B663AA2
MAXmalware (ai score=95)
VBA32Adware.Agent
MalwarebytesMalware.AI.46394249
PandaTrj/Genetic.gen
RisingAdware.DealPly!1.AA42 (CLASSIC)
YandexTrojan.GenAsa!4lNpu3kTDsM
IkarusPUA.DealPly
FortinetW32/Agen.0754!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Malware.AI.46394249?

Malware.AI.46394249 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment