Malware

How to remove “Malware.AI.116866955”?

Malware Removal

The Malware.AI.116866955 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.116866955 virus can do?

  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.116866955?


File Info:

name: F8AFAFD83FD2E324897D.mlw
path: /opt/CAPEv2/storage/binaries/9bf99f45247121a37ce7b8a664c6ee58c0c820a7e1bf798d839cecc57170fea6
crc32: 2496BC52
md5: f8afafd83fd2e324897d29067c588e9c
sha1: 55571081c160b8ebf62a47d7b295db376a55a4b5
sha256: 9bf99f45247121a37ce7b8a664c6ee58c0c820a7e1bf798d839cecc57170fea6
sha512: f5b1d469aa9aaf5f948dbb9c80938cfaa140e63ac3643e06292458e403a94d5588981643937fa38a67777ab8983d45a1565b262886541b115b493d651d3ffc2a
ssdeep: 12288:W7ltXv0lbuz9HB1mfNjDKZdNEs6zv+GG9:8JvYuz9HBApUdNELvO9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19BB47E73B6F14537D12729788D1B97BD982ABE202E38548E3BE45D4C6F386C1342E297
sha3_384: 5a2a6872d93b49590a0719c22cceb9c11f888712cce157337bb4df9141fafb3864b5c806cde426ba0d064662535ef567
ep_bytes: 558bec83c4f053b8d8194600e88b41fa
timestamp: 2009-12-11 02:01:07

Version Info:

0: [No Data]

Malware.AI.116866955 also known as:

LionicTrojan.Win32.Delf.4!c
MicroWorld-eScanGen:Variant.Strictor.263743
ClamAVWin.Trojan.Delf-15320
FireEyeGeneric.mg.f8afafd83fd2e324
ALYacGen:Variant.Strictor.263743
CylanceUnsafe
ZillyaTrojan.Delf.Win32.31335
SangforBackdoor.DOC.Agent.Gen2
K7AntiVirusTrojan ( 00016f7f1 )
AlibabaTrojan:Win32/Backdr.0e32540c
K7GWTrojan ( 00016f7f1 )
Cybereasonmalicious.83fd2e
VirITTrojan.Win32.Delf.QFA
CyrenW32/Agent.EB.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Delf.OVF
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Strictor.263743
NANO-AntivirusTrojan.Win32.TrjGen.bsjyjv
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.114e0064
Ad-AwareGen:Variant.Strictor.263743
EmsisoftGen:Variant.Strictor.263743 (B)
ComodoMalware@#2xbf048it8yzc
DrWebTrojan.Siggen3.31779
VIPREGen:Variant.Strictor.263743
TrendMicroBKDR_DELF.SMR
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
Trapminemalicious.moderate.ml.score
SophosMal/Backdr-M
GDataGen:Variant.Strictor.263743
JiangminTrojan/Delf.suf
WebrootW32.Malware.Gen
AviraBDS/Backdoor.Gen2
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.F0
ArcabitTrojan.Strictor.D4063F
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.Delf.C45778
McAfeeBackDoor-EPJ.a
VBA32Trojan.Delf
MalwarebytesMalware.AI.116866955
TrendMicro-HouseCallBKDR_DELF.SMR
RisingTrojan.Win32.DelfCode.ab (CLASSIC)
YandexAdware.Delf.Gen.9
IkarusBackdoor.Gen2
MaxSecureTrojan.Malware.1861204.susgen
FortinetW32/Delf.NTBZ!tr
BitDefenderThetaGen:NN.ZelphiF.34754.GKZ@aSBnmSoj
AVGWin32:Trojan-gen
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.116866955?

Malware.AI.116866955 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment