Malware

About “Malware.AI.1155138194” infection

Malware Removal

The Malware.AI.1155138194 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1155138194 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.1155138194?


File Info:

crc32: 4ED4C401
md5: bc1f470171d6bacfe2731c4f3e4fe40b
name: BC1F470171D6BACFE2731C4F3E4FE40B.mlw
sha1: b19fd7128a151b576ca3df03932a8178a52c643c
sha256: ae565edd29b7b4e1f710feb8ffd40489c583ae8bc071d7bfa5d0be227f5de422
sha512: 9a097df448c382934cf07681cc837f1137d8e987435f61bf9ae4d6b38a2bf65a558c86d407512d27d3ae5c3788ceab9fbc0c0264b289f8a3970f2244b597811f
ssdeep: 6144:0ozVVBtb6btyTtZj5WBLyjsgvvnlYt8Z6ZQt9STz:VzVwtyT/j0Xc+8ZSQtsTz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.1155138194 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0051cdf01 )
Elasticmalicious (high confidence)
ALYacTrojan.Locky.Gen.1
MalwarebytesMalware.AI.1155138194
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.Locky.Gen.1
K7GWTrojan ( 0051cdf01 )
Cybereasonmalicious.171d6b
BitDefenderThetaAI:Packer.3CCCA1BE21
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DBOD
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Locky.evpbez
MicroWorld-eScanTrojan.Locky.Gen.1
Ad-AwareTrojan.Locky.Gen.1
SophosMal/Generic-R + Mal/Cerber-D
ComodoMalware@#3vh58y4wy3s7i
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPLOCKY.SM4
McAfee-GW-EditionDropper-FRG!BC1F470171D6
FireEyeGeneric.mg.bc1f470171d6bacf
EmsisoftTrojan.Locky.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1121545
Antiy-AVLTrojan/Generic.ASMalwS.22E72BB
GDataTrojan.Locky.Gen.1
TACHYONRansom/W32.Locky.240942
McAfeeDropper-FRG!BC1F470171D6
MAXmalware (ai score=99)
VBA32Trojan.Ransom.05716
TrendMicro-HouseCallRansom_HPLOCKY.SM4
RisingTrojan.Generic@ML.100 (RDML:4JOdg2y5+C4J29axtjT5cQ)
YandexTrojan.GenAsa!kyWuZJUvk/Y
IkarusTrojan.Locky
eGambitUnsafe.AI_Score_99%
FortinetW32/Bebloh.K!tr.spy
PandaTrj/CI.A

How to remove Malware.AI.1155138194?

Malware.AI.1155138194 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment