Malware

Malware.AI.1128071838 malicious file

Malware Removal

The Malware.AI.1128071838 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1128071838 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.1128071838?


File Info:

name: 7CDA4729AD4FE8D52BE4.mlw
path: /opt/CAPEv2/storage/binaries/5ef7a9a27c230ae6684200ba63b4fe7a7b48fb848977e42553a9d59800b052bf
crc32: 259C9491
md5: 7cda4729ad4fe8d52be4c521c0c45d05
sha1: 063b8cc41791b0e4f785a04673143de99ec2c2f0
sha256: 5ef7a9a27c230ae6684200ba63b4fe7a7b48fb848977e42553a9d59800b052bf
sha512: 6b87975b71a26828d7ac78de94464b95b57f3095f04e26b23a8ea0d8d3d04e9db437e891856708f851f06c20032b80af47e0ccb90aa7835d6e067f779dd11b8d
ssdeep: 24576:+13mDlaF+my6cqzkaCyMQ2jTcEY6O6Bu1X:+3ewA1Y2HxO/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F82523947FC55EF9EA7D2BB12A54F9B9830A2D381C547CCB931A0FC06294DD5006BAE3
sha3_384: 0718b920632b20c4b0f944bcc05e23fa59bf610d268dcc8dc4a2e282598ea57ff7dd638cd09030471aedd4a6b51ee6cc
ep_bytes: 558bec81ec3c040000e8131200006aff
timestamp: 2008-02-24 03:36:46

Version Info:

0: [No Data]

Malware.AI.1128071838 also known as:

BkavW32.AIDetect.malware2
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Spy.ZBot.MK
FireEyeGeneric.mg.7cda4729ad4fe8d5
CAT-QuickHealTrojanspy.Zbot.20720
ALYacTrojan.Spy.ZBot.MK
CylanceUnsafe
ZillyaTrojan.Zbot.Win32.6563
K7AntiVirusSpyware ( 000656901 )
K7GWSpyware ( 000656901 )
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/Agent.CC.gen!Eldorado
SymantecTrojan.Zbot
Elasticmalicious (high confidence)
ESET-NOD32Win32/Spy.Zbot.BK
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Spy.ZBot.MK
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastSf:Zbot-JD [Trj]
Ad-AwareTrojan.Spy.ZBot.MK
SophosML/PE-A
ComodoTrojWare.Win32.Spy.Zbot.ABA@1pe611
DrWebTrojan.PWS.Panda.31
VIPRETrojan.Spy.ZBot.MK
TrendMicroMal_Zbot-6
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.Spy.ZBot.MK (B)
SentinelOneStatic AI – Malicious PE
GDataTrojan.Spy.ZBot.MK
AviraTR/Dropper.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMalwS.281
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftPWS:Win32/Zbot.gen!Q
GoogleDetected
AhnLab-V3Trojan/Win.Zbot.R513295
McAfeePWS-Zbot.gen.ct
VBA32SScope.Trojan-Spy.Win32.Zbot.gen
MalwarebytesMalware.AI.1128071838
TrendMicro-HouseCallMal_Zbot-6
RisingStealer.Zbot!8.109D7 (TFE:3:CrtxG4pMPhT)
IkarusTrojan-Spy.Win32.Zbot
FortinetW32/Zbot.JF!tr.spy
BitDefenderThetaAI:Packer.1C56298D1E
AVGSf:Zbot-JD [Trj]
Cybereasonmalicious.9ad4fe

How to remove Malware.AI.1128071838?

Malware.AI.1128071838 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment