Malware

Malware.AI.1294251351 (file analysis)

Malware Removal

The Malware.AI.1294251351 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1294251351 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.1294251351?


File Info:

name: 9D7D44CD6305FB8AE2B7.mlw
path: /opt/CAPEv2/storage/binaries/312a3cd7dddc4267485bc19d1bde1cf155c79a7d95ca627732ab3b6cd861fd24
crc32: B85E6A0B
md5: 9d7d44cd6305fb8ae2b7cdd13fa9c1a4
sha1: 3cdf93268e2899bb6ae678b0e859ca2cb29b57d5
sha256: 312a3cd7dddc4267485bc19d1bde1cf155c79a7d95ca627732ab3b6cd861fd24
sha512: 2ae46187f9fc2db930840a18fb6440e79d152f2f894a26a67bf5939f1a8cd0fb507f6401d81ae103eaaafe2a578560b00ae7aa75d0f19a342e20e2e71fef9d12
ssdeep: 384:7KWJ05zqfi2fEWVBQvALTuqQ8GXZtTMcuv1dgH/AKlCxBdd54fXu:7MQa2M6BQvALTBPITMcuvgDIxBmf
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1EFB2DFB78A11ACD8DA6990B0B848EE517A0C48F6F27E8367E1064D33F49F4DA55B7C07
sha3_384: 2889b6e9b9376a17be8b927c3194ecb9ef33babef438a7555a728a3c32f7ac95acc550ac74fa54960e5ec785cb215380
ep_bytes: 807c2408010f857d01000060be00b000
timestamp: 2005-04-21 20:07:05

Version Info:

0: [No Data]

Malware.AI.1294251351 also known as:

LionicTrojan.Win32.Agent.Y!c
DrWebTrojan.Click.377
MicroWorld-eScanTrojan.Agent.DJ
FireEyeTrojan.Agent.DJ
SkyhighBehavesLike.Win32.Trojan.mc
McAfeeGenericRXAA-FA!9D7D44CD6305
Cylanceunsafe
ZillyaTrojan.Agent.Win32.21859
SangforAdware.Win32.Agent.Voyv
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/FakeVir.aebfcc50
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
VirITTrojan.Win32.Generic.WBH
SymantecAdware.TopAV
ESET-NOD32Win32/Agent.DJ
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Agent.dj
BitDefenderTrojan.Agent.DJ
NANO-AntivirusTrojan.Win32.Agent.gyha
F-SecureTrojan.TR/Agent.DJ
VIPRETrojan.Agent.DJ
SophosMal/Generic-S
JiangminTrojan/Agent.ckxs
WebrootAdware.Desktop.Hijacker
VaristW32/FakeAlert.RSRZ-6880
AviraTR/Agent.DJ
Antiy-AVLTrojan/Win32.Agent
KingsoftWin32.Trojan.Agent.dj
XcitiumMalware@#3o8udwi1hfmiv
ArcabitTrojan.Agent.DJ
ZoneAlarmTrojan.Win32.Agent.dj
GDataTrojan.Agent.DJ
GoogleDetected
VBA32Trojan.Agent
ALYacTrojan.Agent.DJ
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
MalwarebytesMalware.AI.1294251351
TrendMicro-HouseCallTROJ_AGENT.SG
TencentWin32.Trojan.Agent.Zchl
YandexTrojan.GenAsa!t+jTRXTl8Ek
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.173249.susgen
FortinetW32/Agent.DJ!tr
PandaAdware/TopSpyware
alibabacloudTrojan:Win/Agent.DJ

How to remove Malware.AI.1294251351?

Malware.AI.1294251351 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment