Malware

Malware.AI.1153170355 removal instruction

Malware Removal

The Malware.AI.1153170355 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1153170355 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1153170355?


File Info:

name: 3F5ACC018B46D8C94039.mlw
path: /opt/CAPEv2/storage/binaries/8a40967c0527000b29686905e0f22d606a5abeacf6136d950422702bfbdd787b
crc32: BE71A908
md5: 3f5acc018b46d8c940396e9fd96232b0
sha1: 813720d33b2674f522fbb60688b40f01753a3e32
sha256: 8a40967c0527000b29686905e0f22d606a5abeacf6136d950422702bfbdd787b
sha512: 09b8724980261da2007bfd68a1bedb9ff70b82df1f2b501c6502ce08a8148712bc208a4cd486a30f0c0d2cb3e7a052562856f887d0122d212d301418e9b55792
ssdeep: 6144:Yy7O4i1h3RSkPIVjRhRBXoS+H1dDxI04Vze:Yyg1VRnPCRFXoS0
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D3442935997CC2A6F37E2A3FD0A2B8C4F7E794EC7E8746911220655B7E92910B90F14C
sha3_384: 0056660e0153ce6d2058ecc92b0e8a9ba8f447c093d7d876104bd8f13975d1f6e10251bd69ca5f561bb68faec683d80f
ep_bytes: 60be00d043008dbe0040fcff5789e58d
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.1153170355 also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanTrojan.GenericKD.40263266
FireEyeGeneric.mg.3f5acc018b46d8c9
ALYacTrojan.GenericKD.40263266
CylanceUnsafe
K7AntiVirusUnwanted-Program ( 004d38111 )
K7GWUnwanted-Program ( 004d38111 )
Cybereasonmalicious.18b46d
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.Patcher.DE potentially unsafe
APEXMalicious
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.40263266
NANO-AntivirusTrojan.Win32.Agent.ecbuie
SUPERAntiSpywareHack.Tool/Gen-Patcher
AvastFileRepMalware
TencentWin32.Trojan.Agent.Lmle
Ad-AwareTrojan.GenericKD.40263266
EmsisoftTrojan.GenericKD.40263266 (B)
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PKT21
McAfee-GW-EditionBehavesLike.Win32.PolyPatch.dh
SophosGeneric PUA IB (PUA)
GDataTrojan.GenericKD.40263266
WebrootW32.Malware.Gen
Antiy-AVLTrojan/Generic.ASMalwS.21832DB
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.A!ml
CynetMalicious (score: 100)
McAfeeArtemis!3F5ACC018B46
MAXmalware (ai score=100)
VBA32BScope.Trojan.Bitrep
MalwarebytesMalware.AI.1153170355
TrendMicro-HouseCallTROJ_GEN.R002C0PKT21
YandexTrojan.GenAsa!qaXuCCrY06k
SentinelOneStatic AI – Malicious PE
FortinetRiskware/Patcher
BitDefenderThetaAI:Packer.3038AB9B21
AVGFileRepMalware
PandaTrj/CI.A

How to remove Malware.AI.1153170355?

Malware.AI.1153170355 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment