Malware

Malware.AI.536282046 (file analysis)

Malware Removal

The Malware.AI.536282046 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.536282046 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.536282046?


File Info:

name: BA9CCAC2E3300DC5949F.mlw
path: /opt/CAPEv2/storage/binaries/de00d63feacec72d29eec60e56052ed47a810ce3ac3e6e4ebbdd55d80616089f
crc32: B0512937
md5: ba9ccac2e3300dc5949f4ed0905251e5
sha1: 81867f474e259dd4f7e43ca6f9bb304fcaf03510
sha256: de00d63feacec72d29eec60e56052ed47a810ce3ac3e6e4ebbdd55d80616089f
sha512: 617617a274771820cf97b39511d897d2f636e093f9f878bae2b9731e5295e51e53426824310d64380fc16557d8dbe39fc592bb6293b07a6a730ce30b8c0daa13
ssdeep: 192:cOaAl+No9UH86KlVsV9P6AO1miRx8VYr4eZJgnda4/cUe3u4urt9v8:dbgl86+yyA2UVYrpZAB/5e3u4uJV8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BDE22B51F762E5A8E11449399C03C2E887D2BD63DC1636A77AA43F6FFC7034B4856C8A
sha3_384: bf99f33ce6ab7657162cc0c716d8927b3763205118f4fb179db3a1d37bc89b5a049684afab39381754c89345713416b2
ep_bytes: 68bc764000e8f0ffffff000000000000
timestamp: 2007-07-23 13:18:13

Version Info:

0: [No Data]

Malware.AI.536282046 also known as:

BkavW32.AIDetect.malware1
LionicVirus.Win32.Virut.lowa
Elasticmalicious (high confidence)
DrWebTrojan.Siggen3.12086
MicroWorld-eScanGen:Variant.Ulise.243064
FireEyeGeneric.mg.ba9ccac2e3300dc5
CAT-QuickHealTrojan.Comisproc.AZ4
ALYacGen:Variant.Ulise.243064
ZillyaWorm.VB.Win32.33013
AlibabaWorm:Win32/Bloodhound.f6d7d08d
Cybereasonmalicious.2e3300
CyrenW32/Damaged_File.E.gen!Eldorado
SymantecBloodhound.MalPE.B
APEXMalicious
Paloaltogeneric.ml
KasperskyWorm.Win32.VB.fer
BitDefenderGen:Variant.Ulise.243064
NANO-AntivirusTrojan.Win32.VB.epyowu
AvastWin32:VB-AIDN [Trj]
Ad-AwareGen:Variant.Ulise.243064
EmsisoftGen:Variant.Ulise.243064 (B)
ComodoWorm.Win32.Agent.VBC@4×4502
BaiduWin32.Trojan.VB.je
TrendMicroTROJ_GEN.R002C0OGI21
McAfee-GW-EditionBehavesLike.Win32.Generic.nt
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Ulise.243064
Antiy-AVLTrojan/Generic.ASBOL.9FD7
MicrosoftTrojan:Win32/Occamy.CDE
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXBZ-FU!BA9CCAC2E330
MAXmalware (ai score=86)
MalwarebytesMalware.AI.536282046
TrendMicro-HouseCallTROJ_GEN.R002C0OGI21
TencentTrojan.Win32.Agent.bc
YandexTrojan.VBGent.Gen.1634
IkarusTrojan.Win32.VB
MaxSecureWorm.Vb.fer
FortinetW32/VB.FER!tr
AVGWin32:VB-AIDN [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.536282046?

Malware.AI.536282046 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment