Malware

Malware.AI.624549408 removal guide

Malware Removal

The Malware.AI.624549408 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.624549408 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.624549408?


File Info:

name: C530FD898317976D84E6.mlw
path: /opt/CAPEv2/storage/binaries/6af1d89b71ddc80377b834aa88bf1f4cc482b72b98a5ab98d789d9e6936cf0b2
crc32: 9149D7D1
md5: c530fd898317976d84e6adc1313eda2f
sha1: 62ec261b105b3596d20d9802a6239372790ca3c9
sha256: 6af1d89b71ddc80377b834aa88bf1f4cc482b72b98a5ab98d789d9e6936cf0b2
sha512: e2e39add26a34e4128a5d14bdcd1cfd4cde22e92e0f229ab60e5f56b8808ecfbf78dcd3bacd1015f25f341270053ffedec36cd6f98ae0e93ba001f01dc35ea1a
ssdeep: 1536:bsGyn0OEu0fnJz+njV21MqqU+in9mNobLBq8IZV:bsPMnJanRIMqqDu9mNo3BlID
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A473BF837BC089BAF0B207720C63E7E62074FD604F55D6A774C09B5F7E75289093AA96
sha3_384: 28befcd1bdae9f8fe1f0cf5fdd8260878cc21f248ad49582bca31bce95624dfec8de2c83b9a3c4a6692bb1084e4725da
ep_bytes: 60be007041008dbe00a0feff57eb0b90
timestamp: 2012-12-31 00:38:51

Version Info:

Translation: 0x0804 0x04b0
Comments: 方便实用的USB设备主控芯片识别工具
CompanyName: 数码之家
FileDescription: U盘/MP3主控芯片识别工具
LegalCopyright: ~~翁软在线 创意无限~~
LegalTrademarks: 哈尔滨工业大学研究生院 哈尔滨理工大学软件与微电子学院
ProductName: Chip Genius
FileVersion: 4.21.0701
ProductVersion: 4.21.0701
InternalName: ChipGenius_v4_21_0701
OriginalFilename: ChipGenius_v4_21_0701.exe

Malware.AI.624549408 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Zusy.441617
FireEyeGeneric.mg.c530fd898317976d
McAfeeArtemis!C530FD898317
MalwarebytesMalware.AI.624549408
SangforSuspicious.Win32.Save.ins
Cybereasonmalicious.b105b3
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
APEXMalicious
BitDefenderGen:Variant.Zusy.441617
AvastWin32:Malware-gen
RisingDownloader.Rakhni!8.1CEF (TFE:1:i5zF6NbKexB)
Ad-AwareGen:Variant.Zusy.441617
SophosGeneric ML PUA (PUA)
ComodoPacked.Win32.MUPX.Gen@24tbus
McAfee-GW-EditionBehavesLike.Win32.Generic.lh
EmsisoftGen:Variant.Fragtor.159807 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.441617
Antiy-AVLTrojan/Generic.ASMalwS.330C
ArcabitTrojan.Zusy.D6BD11
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34754.em0@aui42ecl
ALYacGen:Variant.Fragtor.159807
MAXmalware (ai score=86)
FortinetW32/ULPM.2C75!tr
AVGWin32:Malware-gen

How to remove Malware.AI.624549408?

Malware.AI.624549408 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment