Categories: Malware

Malware.AI.1168222287 removal guide

The Malware.AI.1168222287 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1168222287 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1168222287?


File Info:

name: 56B267F4608956B22767.mlwpath: /opt/CAPEv2/storage/binaries/00b93bfd3ebccb9910412d16d6bf4bf09e148d35a81f36cfe7ce6ca4897e9288crc32: 5BBCE296md5: 56b267f4608956b22767fe6f7109a589sha1: bfbf2ba2ffb094d027736224c6d84a4885dd4ab2sha256: 00b93bfd3ebccb9910412d16d6bf4bf09e148d35a81f36cfe7ce6ca4897e9288sha512: c169469baf2f39d1da74cd54b2242478f75d1d0399fdf1dac210faa9dbfd55449df4b1d0a6e29aee85dd1f2bbde7f2a678cdf4b8a32201ebaef9c8ba53e014dessdeep: 3072:phUrpJlLXWcXqUAXmzKL3UMAFjfj0gYObDKzrkT8mWFI3AwZMSzwSb5XbRZzFPkk:pyF7ImzKLjsXnvKzwqKwaF9HMzTy1Ptype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T148649D117790C472D16A29324819C2B4AB7BB031DFE589C77BD41B3E9F702D2B93A71Asha3_384: f361852bd9ab5947182d297e81b2ec9e4af04a4f2a7a01d111ccc14c5f11f05956dbe3b3858e4b378689e4b3a4aa4588ep_bytes: 8bec609ce939b00200ff8bff558bec8btimestamp: 2011-01-17 12:54:43

Version Info:

FileVersion: 1, 0, 0, 2LegalCopyright: Copyright (C) 2010ProductVersion: 1, 0, 0, 2Translation: 0x0409 0x04b0

Malware.AI.1168222287 also known as:

Bkav W32.AIDetect.malware1
Lionic Trojan.Win32.HangOver.4!c
MicroWorld-eScan DeepScan:Generic.ShellCode.Marte.J.6D6535EA
ClamAV Win.Dropper.Memery-9979246-0
FireEye Generic.mg.56b267f4608956b2
ALYac DeepScan:Generic.ShellCode.Marte.J.6D6535EA
Cylance Unsafe
Sangfor Trojan.Win32.Save.a
K7AntiVirus Spyware ( 0020507a1 )
Alibaba TrojanSpy:Win32/HangOver.419b9f7d
K7GW Spyware ( 0020507a1 )
Cybereason malicious.460895
VirIT Trojan.Win32.Siggen2.BDJS
Cyren W32/ABRisk.KKIE-1645
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Spy.Agent.NUS
APEX Malicious
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.HangOver.gen
BitDefender DeepScan:Generic.ShellCode.Marte.J.6D6535EA
NANO-Antivirus Virus.Win32.Gen.ccmw
Avast Win32:MalOb-FE [Cryp]
Tencent Win32.Trojan.Hangover.Kzfl
Ad-Aware DeepScan:Generic.ShellCode.Marte.J.6D6535EA
Emsisoft DeepScan:Generic.ShellCode.Marte.J.6D6535EA (B)
DrWeb Trojan.Siggen18.27706
VIPRE DeepScan:Generic.ShellCode.Marte.J.6D6535EA
TrendMicro TROJ_GEN.R002C0PKN22
McAfee-GW-Edition BehavesLike.Win32.NetLoader.fh
Sophos Mal/Generic-S
SentinelOne Static AI – Malicious PE
GData DeepScan:Generic.ShellCode.Marte.J.6D6535EA
Jiangmin Trojan.HangOver.y
Avira HEUR/AGEN.1242849
Antiy-AVL Trojan[Spy]/Win32.Agent
Arcabit DeepScan:Generic.ShellCode.Marte.J.6D6535EA
ViRobot Trojan.Win32.A.Agent.245248.B
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Malware/Win.Generic.C5312369
McAfee Generic Obfuscated.g
MAX malware (ai score=83)
VBA32 Heur.Trojan.Hlux
Malwarebytes Malware.AI.1168222287
TrendMicro-HouseCall TROJ_GEN.R002C0PKN22
Rising Backdoor.Hupigon!8.B57 (TFE:3:9ZR3ES2hAvB)
Yandex Trojan.GenAsa!o0gODfbw894
Ikarus Trojan-Spy.Win32.Agent
Fortinet W32/GenKryptik.GCTV!tr
BitDefenderTheta AI:Packer.7FABD1351F
AVG Win32:MalOb-FE [Cryp]

How to remove Malware.AI.1168222287?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Generic.Dacic.94CCEEA9.A.5CD2C435 (B) removal instruction

The Generic.Dacic.94CCEEA9.A.5CD2C435 (B) is considered dangerous by lots of security experts. When this infection is…

29 mins ago

Should I remove “HackTool.Win32.KMSAuto.i”?

The HackTool.Win32.KMSAuto.i is considered dangerous by lots of security experts. When this infection is active,…

38 mins ago

Win32/Kryptik.XFZ information

The Win32/Kryptik.XFZ is considered dangerous by lots of security experts. When this infection is active,…

49 mins ago

How to remove “Trojan:Win32/Cendelf!pz”?

The Trojan:Win32/Cendelf!pz is considered dangerous by lots of security experts. When this infection is active,…

53 mins ago

Should I remove “Fugrafa.30711”?

The Fugrafa.30711 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Malware.AI.1251652225 information

The Malware.AI.1251652225 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago