Malware

Malware.AI.548786285 removal instruction

Malware Removal

The Malware.AI.548786285 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.548786285 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.548786285?


File Info:

crc32: 2646D56A
md5: facf6d51754a175b2f310e8c11f9f4e7
name: FACF6D51754A175B2F310E8C11F9F4E7.mlw
sha1: 5fc70983ca1d058ca5ae324ceb5ad149ac9b5716
sha256: 1dccc2078b8c27d15e477dba0efbe2e6bd31d8dc866e9806e95fa3a8bc8d92bf
sha512: 57471b924ca5984b505fb2c4de919e9ced7aa5dae0ae0cb69fa39a6d4b98218d6553be1f2ba035585b8038784c3607a33630f296794284c43bde233e4dd57995
ssdeep: 1536:vL2g2sHIPbBy8yWRWt6WXhIMfp1O+5F09s2otSR45xBgmQBs8:vat89Zfp1O+56+K45fgmQy8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 2006 Microsoft Corporation. All rights reserved.
InternalName: DW20
FileVersion: 12.0.6606.1000
CompanyName: Microsoft Corporation
LegalTrademarks1: Microsoftxae is a registered trademark of Microsoft Corporation.
LegalTrademarks2: Windowsxae is a registered trademark of Microsoft Corporation.
ProductName: Microsoft Application Error Reporting
ProductVersion: 12.0.6606.1000
FileDescription: Microsoft Application Error Reporting
OriginalFilename: DW20.Exe
Translation: 0x0000 0x04e4

Malware.AI.548786285 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00587dba1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10700
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.Ransom.Hermes
CylanceUnsafe
ZillyaTrojan.Mint.Win32.358
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00587dba1 )
Cybereasonmalicious.1754a1
CyrenW32/Trojan.BUF.gen!Eldorado
SymantecPacked.Generic.459
ESET-NOD32Win32/Filecoder.Hermes.J
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Mint.Zamg.O
NANO-AntivirusTrojan.Win32.Encoder.fektii
MicroWorld-eScanTrojan.Mint.Zamg.O
TencentMalware.Win32.Gencirc.114d3126
Ad-AwareTrojan.Mint.Zamg.O
SophosMal/Generic-R + Mal/Hermes-C
ComodoTrojWare.Win32.TrojanProxy.Bunitu.PC@803hth
BitDefenderThetaGen:NN.ZexaF.34266.iq1@aWinCkli
VIPRETrojan.Win32.Generic.pak!cobra
TrendMicroRansom.Win32.SHADE.SMB.hp
McAfee-GW-EditionTrickbot-FRDP!FACF6D51754A
FireEyeGeneric.mg.facf6d51754a175b
EmsisoftTrojan.Mint.Zamg.O (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.haujk
eGambitPE.Heur.InvalidSig
Antiy-AVLTrojan/Generic.ASMalwS.26B1742
MicrosoftRansom:Win32/Wyhymyz.A
GDataTrojan.Mint.Zamg.O
AhnLab-V3Trojan/Win32.Hermesran.R230218
McAfeeTrickbot-FRDP!FACF6D51754A
MAXmalware (ai score=96)
VBA32BScope.Trojan.Azorult
MalwarebytesMalware.AI.548786285
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.SHADE.SMB.hp
RisingTrojan.Generic@ML.97 (RDML:sxB2s6Js4F0ASuyjUeWKuw)
YandexTrojan.GenAsa!egKV0Ofdtj4
IkarusTrojan.Crypt
FortinetW32/Kryptik.GWSH!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Malware.AI.548786285?

Malware.AI.548786285 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment