Malware

Malware.AI.46936783 (file analysis)

Malware Removal

The Malware.AI.46936783 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.46936783 virus can do?

  • Creates RWX memory
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.46936783?


File Info:

crc32: 3587378B
md5: 92c498ab8a9af1ef25f7616f56454851
name: 92C498AB8A9AF1EF25F7616F56454851.mlw
sha1: aadb483aba7b44d9f4442128df84b7fb0397d83c
sha256: 1ddbbea914748aa3d927376655ca09b28d5dcbe108e4db5d7e5c2c66f8b0a8fb
sha512: 5b73723c02887b9a7600b62e2d6e11b691d81169ea134ea65ffd70269e0cc7b113b22ab232f75def446231be4a59f6653b1a7a89cd283a26ea4dadbd0221bc43
ssdeep: 24576:0yYBo3HdC3KBfONNMJ92u3CdzsbRPprMM:euYsOhuzH
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: Encrypt.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: Encrypt.exe

Malware.AI.46936783 also known as:

K7AntiVirusTrojan ( 0051717b1 )
LionicTrojan.MSIL.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader26.43797
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.257129
CylanceUnsafe
SangforTrojan.MSIL.Generic.ky
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0051717b1 )
Cybereasonmalicious.b8a9af
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.EMF
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.Generic
BitDefenderGen:Variant.Zusy.257129
NANO-AntivirusTrojan.Win32.Zusy.fbgipr
MicroWorld-eScanGen:Variant.Zusy.257129
TencentMsil.Trojan.Generic.Htvo
Ad-AwareGen:Variant.Zusy.257129
SophosMal/Generic-S
ComodoMalware@#258qy6ss1seuz
BitDefenderThetaGen:NN.ZemsilF.34266.Qn0@a8rsBJn
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tz
FireEyeGeneric.mg.92c498ab8a9af1ef
EmsisoftGen:Variant.Zusy.257129 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.260737C
MicrosoftBackdoor:MSIL/Bladabindi
GDataGen:Variant.Zusy.257129
AhnLab-V3Trojan/Win32.Genome.R21136
McAfeeGenericRXJC-OQ!92C498AB8A9A
MAXmalware (ai score=98)
MalwarebytesMalware.AI.46936783
PandaTrj/GdSda.A
YandexTrojan.Agent!Qotp9Wskrow
IkarusTrojan-Dropper.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.DGG!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.46936783?

Malware.AI.46936783 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment