Malware

Malware.AI.1122270879 (file analysis)

Malware Removal

The Malware.AI.1122270879 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1122270879 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1122270879?


File Info:

name: D096DA8E7249EF554713.mlw
path: /opt/CAPEv2/storage/binaries/28c4640b79ae10220b423cc69efd1cf502ef73a6c5ef87f1eafab3587b9e58f6
crc32: 5B0B85E9
md5: d096da8e7249ef5547135dffa702d32d
sha1: da49bee3cbcb8b0b874d12cdfed72cc76fc521c1
sha256: 28c4640b79ae10220b423cc69efd1cf502ef73a6c5ef87f1eafab3587b9e58f6
sha512: d23b2405bbaeacd406842a5b2bf537c34dfd093205ca09d39bdd6067e9cb7a5753b547921292e90132cb8122a548aed6f77416c95a3b9215e08fda4fc4f7b2d2
ssdeep: 12288:jvy5ocK9+h36OFvX/9k5KMH7TaZViCEWY0MD:+nZh3Bdy5jPiViCEWY0M
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T165B46E62F6F04437E2735A7D8D6B93A8583A7E103D39A84A3BE41D4C5F39781395B283
sha3_384: 8fc15735e7b3f84b0670abaaba8cb1bd2a468218e5e589acb3fce0afdb2058190a627703d14668f1f1a6692347e7f87b
ep_bytes: 558bec83c4f0b8348a4600e83cd0f9ff
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: Distribuciones Notariales
FileDescription:
FileVersion: 2.1.0.0
InternalName:
LegalCopyright:
LegalTrademarks:
OriginalFilename:
ProductName:
ProductVersion: 2.0.0.0
Comments:
Translation: 0x0c0a 0x04e4

Malware.AI.1122270879 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.38126822
FireEyeGeneric.mg.d096da8e7249ef55
McAfeeArtemis!D096DA8E7249
SangforTrojan.Win32.Heuristic.rg
BitDefenderThetaGen:NN.ZelphiF.34294.FG0@aWPcd1K
CyrenW32/Banload.Y.gen!Eldorado
BitDefenderTrojan.GenericKD.38126822
NANO-AntivirusTrojan.Win32.Banload.qtff
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.38126822
ComodoMalware@#goriwyf8jvxf
McAfee-GW-EditionBehavesLike.Win32.Bactera.gh
EmsisoftTrojan.GenericKD.38126822 (B)
IkarusTrojan-Dropper.Agent
GDataTrojan.GenericKD.38126822
Antiy-AVLTrojan/Generic.ASMalwS.4DB83
VBA32suspected of Trojan.Downloader.gen
MalwarebytesMalware.AI.1122270879
APEXMalicious
TencentTrojan.Win32.BitCoinMiner.la
MAXmalware (ai score=86)
eGambitUnsafe.AI_Score_96%
AVGWin32:Malware-gen
Cybereasonmalicious.3cbcb8

How to remove Malware.AI.1122270879?

Malware.AI.1122270879 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment