Malware

Should I remove “Malware.AI.1152319650”?

Malware Removal

The Malware.AI.1152319650 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1152319650 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.1152319650?


File Info:

name: BED00B4086B85F1381B8.mlw
path: /opt/CAPEv2/storage/binaries/5c26d0d0318b28bebc5f6c38b59d59b73c25aae5376b5a2f8029b9517c863f74
crc32: 0FB29733
md5: bed00b4086b85f1381b8a1ba1d226ccf
sha1: c7612810492b8d9b521507d26570e60eebd09f83
sha256: 5c26d0d0318b28bebc5f6c38b59d59b73c25aae5376b5a2f8029b9517c863f74
sha512: 18ebd289461bbd9062a27654bf24d70f39924caa3dfbd1a7b2dadb05e330ed641c10b7d8ebc330e03858cd31bf3159d23d4c4622e0490c10e3d6cfaf51367d42
ssdeep: 3072:oUChsRq1b095cOqqJV/8ylHQxXNJ2UKMtDqxm3stgLl4lSGZAVxZ6g8XEUX/0EKC:v/k1OqqJV/86HQN2gJ4dW3ZNVUv0EK0D
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E714AFD077848C85F86A5BB1896BDA100672FCCE9CB1C60F71A57A0F6DB33821C6675B
sha3_384: 39d02ede30f7d18942dd8cefc2ec5cb4dc62fd40c7cbb95314c33edffa786509ff1b0c07c4981b3571542a8dd5688b9a
ep_bytes: ff250020400000000000000000000000
timestamp: 2044-03-07 02:28:35

Version Info:

Comments: e6429522 a533 4975 a7bd 60bd03bdfadb
CompanyName: Oracle Corporation
FileDescription: Java(TM) Platform SE binary
FileVersion: 8.0.2610.12
LegalCopyright: Copyright © 2020
OriginalFilename: Java(TM) Platform SE 8.exe
ProductName: Java(TM) Platform SE 8
ProductVersion: 8.0.2610.12
Assembly Version: 8.0.2610.12
LegalTrademarks: 5fcb478f baf1 47fd a907 00cefefe9046
Translation: 0x0409 0x0514

Malware.AI.1152319650 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Agensla.i!c
DrWebTrojan.DownloaderNET.96
MicroWorld-eScanGen:Variant.Bulz.493246
FireEyeGeneric.mg.bed00b4086b85f13
SkyhighPWS-FCQU!BED00B4086B8
McAfeePWS-FCQU!BED00B4086B8
Cylanceunsafe
ZillyaTrojan.Kryptik.Win32.2554675
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0056f6351 )
AlibabaTrojanPSW:MSIL/Agensla.fd1c5b20
K7GWTrojan ( 0056f6351 )
ArcabitTrojan.Bulz.D786BE
BitDefenderThetaGen:NN.ZemsilF.36744.lm1@am7xldji
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.GVX
APEXMalicious
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
BitDefenderGen:Variant.Bulz.493246
NANO-AntivirusTrojan.Win32.Agensla.hxeguv
AvastWin32:DangerousSig [Trj]
TencentMsil.Trojan-Downloader.Ader.Hajl
EmsisoftGen:Variant.Bulz.493246 (B)
F-SecureHeuristic.HEUR/AGEN.1304199
VIPREGen:Variant.Bulz.493246
TrendMicroTROJ_GEN.R002C0PA924
SophosMal/Generic-S
IkarusTrojan-Downloader.MSIL.Agent
VaristW32/MSIL_Kryptik.BSX.gen!Eldorado
AviraHEUR/AGEN.1304199
Antiy-AVLTrojan/MSIL.Kryptik
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen
GDataGen:Variant.Bulz.493246
GoogleDetected
ALYacGen:Variant.Bulz.493246
MAXmalware (ai score=86)
MalwarebytesMalware.AI.1152319650
PandaTrj/GdSda.A
ZonerTrojan.Win32.94944
TrendMicro-HouseCallTROJ_GEN.R002C0PA924
RisingStealer.Agensla!8.13266 (CLOUD)
YandexTrojan.Igent.bUvKDd.53
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.74499699.susgen
FortinetMSIL/Kryptik.XVV!tr
AVGWin32:DangerousSig [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.1152319650?

Malware.AI.1152319650 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment