Malware

What is “Malware.AI.1229521582”?

Malware Removal

The Malware.AI.1229521582 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1229521582 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.1229521582?


File Info:

name: B73E80FE8173E969B439.mlw
path: /opt/CAPEv2/storage/binaries/8e583c7187a3931a952defdd42c854f5289495d17ba8c033beb2a6bc979950ad
crc32: 8F2B6900
md5: b73e80fe8173e969b439084096b52cf8
sha1: 6f1d3aa4cccb13130ef6a3702673241d282a951f
sha256: 8e583c7187a3931a952defdd42c854f5289495d17ba8c033beb2a6bc979950ad
sha512: 55fd42184e1be1a72156c7849b91f175c8464c90285e9389bfc3b8e17ae29967321a83ad3d7bb0e1a0d4affa1d43f0abdc981068d2e1060efe740009789d4531
ssdeep: 384:FoZvkNEDCHPT/BGsigK9nFWBIx6/hMRZvkNEDCwgjqokP/sSN:iZwICvTYgXBIvRZwICw4JI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T194A37E83E7C844BAC0E40E74267E536280BA1D52476D818B5FFE65E72DF99D2203C613
sha3_384: 263bd94157297a511877abe5ef8e0644a110293056a14de5cc7ee323b59262c52cbd7f58f23a0e0c1773b7ed39c91289
ep_bytes: 6a00e803050000a3a45140006a0a6a00
timestamp: 2009-02-19 06:43:08

Version Info:

0: [No Data]

Malware.AI.1229521582 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanTrojan.Vundo.1580
FireEyeGeneric.mg.b73e80fe8173e969
ALYacTrojan.Vundo.1580
CylanceUnsafe
Sangfor[ARMADILLO V1.XX – V2.XX]
K7AntiVirusTrojan ( 004bcce41 )
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.e8173e
ArcabitTrojan.Vundo.D62C
BitDefenderThetaGen:NN.ZexaF.34592.gmW@aWNmD3f
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
BitDefenderTrojan.Vundo.1580
AvastWin32:Malware-gen
Ad-AwareTrojan.Vundo.1580
EmsisoftTrojan.Vundo.1580 (B)
VIPRETrojan.Vundo.1580
McAfee-GW-EditionBehavesLike.Win32.BadFile.cz
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraBDS/Backdoor.Gen
MAXmalware (ai score=80)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.Vundo.1580
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXTW-VX!B73E80FE8173
MalwarebytesMalware.AI.1229521582
IkarusTrojan.Zlob
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Malware.AI.1229521582?

Malware.AI.1229521582 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment