Malware

About “Malware.AI.1909045200” infection

Malware Removal

The Malware.AI.1909045200 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1909045200 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Created a service that was not started

How to determine Malware.AI.1909045200?


File Info:

name: 1A6195CED31B5CDD0DD7.mlw
path: /opt/CAPEv2/storage/binaries/d0316ddfeb8107e92c4b6489bde1335fb3660ecfa9c444667433a0acaf1b302f
crc32: 0F01A085
md5: 1a6195ced31b5cdd0dd7f143d251ed67
sha1: 0a1ee1312139ff3a8c35a8e43678f3d028bb7479
sha256: d0316ddfeb8107e92c4b6489bde1335fb3660ecfa9c444667433a0acaf1b302f
sha512: bef7fce1de2dedacd46e479594499108b547696987db3af166e95a4b9b3672b83a582ccb0d71adde1bbf3db18369f44b883b8abafc7b854644bd612f180d6c85
ssdeep: 192:F3rsce8V/mhbUvFq+lx//6Pz9GP4oynQE:Vrsc5kgtqWX6Pa4D
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T113B2190B968214F3FF68207508AB533EC2175A85F656AD83DF94EDA210B34B2F93E103
sha3_384: 36a8421694908d1853ef36cef3a0ba0a438c60fbf26537b47d779617be7af4d688322f4d5edbdb5efcb9a7a7ba2e3810
ep_bytes: 558bec6aff68d8304000683820400064
timestamp: 2015-09-04 22:15:48

Version Info:

0: [No Data]

Malware.AI.1909045200 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Graftor.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
FireEyeGeneric.mg.1a6195ced31b5cdd
CAT-QuickHealTrojan.Injector.16825
McAfeeTrojan-FLHU!1A6195CED31B
Cylanceunsafe
VIPREGen:Variant.Zusy.452394
SangforDownloader.Win32.Small.V1m8
K7AntiVirusTrojan-Downloader ( 004d33321 )
AlibabaTrojanDownloader:Win32/Injector.f2846e52
K7GWTrojan-Downloader ( 004d33321 )
Cybereasonmalicious.ed31b5
BaiduWin32.Trojan.Agent.asm
VirITTrojan.Win32.Agent5.AFBD
CyrenW32/Injector.BKN.gen!Eldorado
SymantecTrojan.Cidox!gm
ESET-NOD32a variant of Win32/TrojanDownloader.Small.AMY
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.452394
NANO-AntivirusTrojan.Win32.Inject.dvxbem
MicroWorld-eScanGen:Variant.Zusy.452394
AvastWin32:Agent-BCPP [Trj]
TencentTrojan-DL.Win32.Small.kd
TACHYONTrojan/W32.Agent.24576.ERA
EmsisoftGen:Variant.Zusy.452394 (B)
F-SecureHeuristic.HEUR/AGEN.1343561
DrWebTrojan.KillFiles.29580
ZillyaDownloader.Small.Win32.178591
TrendMicroTROJ_LATOT.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.mz
SophosMal/Generic-S
IkarusTrojan-Dropper.Win32.Injector
JiangminTrojanDropper.Injector.azjd
AviraHEUR/AGEN.1343561
Antiy-AVLTrojan[Dropper]/Win32.Injector
XcitiumTrojWare.Win32.TrojanDownloader.Small.DHR@5zclw1
ArcabitTrojan.Zusy.D6E72A
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.1E6MHDI
GoogleDetected
AhnLab-V3Trojan/Win.Latot.R560762
BitDefenderThetaAI:Packer.FBF8507821
ALYacGen:Variant.Zusy.452394
MAXmalware (ai score=83)
VBA32BScope.Trojan.Wacatac
MalwarebytesMalware.AI.1909045200
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_LATOT.SM
RisingDownloader.Small!8.B41 (TFE:5:4U832Ym2A2O)
YandexTrojan.GenAsa!Zboep0tclJA
MaxSecureTrojan.Malware.202470769.susgen
FortinetW32/Wacatac.B!tr
AVGWin32:Agent-BCPP [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.1909045200?

Malware.AI.1909045200 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment