Malware

Malware.AI.1173015718 (file analysis)

Malware Removal

The Malware.AI.1173015718 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1173015718 virus can do?

  • Unconventionial language used in binary resources: Korean
  • Anomalous binary characteristics

How to determine Malware.AI.1173015718?


File Info:

crc32: 302FE7C2
md5: cf92c396e1d0e597b4f9dd47a0c63abd
name: CF92C396E1D0E597B4F9DD47A0C63ABD.mlw
sha1: 462a5b47acdd08e57d4498f910afde56012e2737
sha256: 26e8f9db70bb892ab740c88c63cea62c0baa4dd51650f12202e12776d9ec91bc
sha512: 8e18a02f855256fcd4648bace75e46607411c48937b8cf34d679e321b19981b74572aba92787ae376f872ebd8be1bfed49994cf65a1eee47326f2d4ecabbf5cd
ssdeep: 24576:VklFcEyY5h6ySSX2ba+m6s9kMJ3lvQBv5ScGae4QONVOs3omhYWT37NE98cN:06Y/PSnb+x3lYrGXGVvYg7N2xN
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) - 2003 Hanbitsoft corp.
InternalName: HTLaunch
FileVersion: 6, 9, 0, 6
CompanyName: Hanbitsoft corp.
ProductName: Tantra Client
ProductVersion: 1, 0, 0, 1
FileDescription: Tantra Client
OriginalFilename: HTLaunch.exe
Translation: 0x0412 0x04b0

Malware.AI.1173015718 also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.Bifrost.29870
ALYacGen:Variant.Cerbu.53597
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.33024
BitDefenderGen:Variant.Cerbu.53597
Cybereasonmalicious.6e1d0e
SymantecML.Attribute.HighConfidence
APEXMalicious
NANO-AntivirusTrojan.Win32.Bifrost.epigeh
MicroWorld-eScanGen:Variant.Cerbu.53597
Ad-AwareGen:Variant.Cerbu.53597
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34142.Vv0@a4Mj!jhG
McAfee-GW-EditionGenericRXFO-DZ!CF92C396E1D0
FireEyeGeneric.mg.cf92c396e1d0e597
EmsisoftGen:Variant.Cerbu.53597 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
MicrosoftTrojan:Script/Phonzy.A!ml
GDataGen:Variant.Cerbu.53597
McAfeeGenericRXFO-DZ!CF92C396E1D0
MAXmalware (ai score=80)
VBA32Backdoor.Bifrose
MalwarebytesMalware.AI.1173015718
RisingTrojan.Generic@ML.98 (RDML:GYRVT3f5UtCL1mstmTKfqw)
IkarusBackdoor.Bifrose

How to remove Malware.AI.1173015718?

Malware.AI.1173015718 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment