Malware

About “Malware.AI.133058023” infection

Malware Removal

The Malware.AI.133058023 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.133058023 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Polish
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.133058023?


File Info:

crc32: 598D6B7C
md5: 49427650c54f88611c7dbfb8d414a38c
name: 49427650C54F88611C7DBFB8D414A38C.mlw
sha1: 44dd8cddf14d578c4ced574c6bd1af7d38fc7580
sha256: 79188989784e91009d7324fcd3be608899598064bb2a559c2711cd74e25b0e90
sha512: 5bc1b142e735c61324c6e6a06bed967ff5adcdb853b6a07ce1d616b6e856fecf4a62044ba94308d40034142d2c8c91449d1385c355de6c793ad9bced1f192924
ssdeep: 768:DRvbKbUe6iGnRMr9yjUAo2buV9ULFZ9mWiZPKva6fL0vR:DZKbWnRMkjUAoOuALFLmJog
type: PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

FileVersion: 6.5.3.385
CompanyName: IEInspector Software
ProductName: HTTP Analyzer Stand-alone
ProductVersion: Version 6
FileDescription: HTTP Analyzer Stand-Alone Trial Edition
CompileDate: 2011xc4xea8xd4xc219xc8xd5 6:34
Translation: 0x0409 0x0199

Malware.AI.133058023 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Kykymber.lmDX
Elasticmalicious (high confidence)
DrWebTrojan.VbCrypt.68
CynetMalicious (score: 100)
ALYacMemScan:Trojan.VBCrypt.B.Dam
CylanceUnsafe
ZillyaTrojan.VBKrypt.Win32.262521
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaRansom:Win32/Xorist.749f6e33
Cybereasonmalicious.0c54f8
CyrenW32/SuspPack.DO.gen!Eldorado
ESET-NOD32Win32/RiskWare.PEMalform.B
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.6657447-1
KasperskyTrojan-Ransom.Win32.Xorist.fnavp
BitDefenderMemScan:Trojan.VBCrypt.B.Dam
NANO-AntivirusTrojan.Win32.VBKrypt.bjwmrh
MicroWorld-eScanMemScan:Trojan.VBCrypt.B.Dam
TencentWin32.Trojan.Vbkrypt.bbti
Ad-AwareMemScan:Trojan.VBCrypt.B.Dam
SophosML/PE-A + Mal/VBCheMan-C
ComodoPacked.Win32.MPEC.Gen@2oey7k
F-SecureTrojan.TR/Crypt.PEPM.Gen
BitDefenderThetaGen:NN.ZexaF.34126.ci0@aylP4Qai
VIPRELooksLike.Win32.InfectedFile!A (v)
McAfee-GW-EditionBehavesLike.Win32.Infected.ph
FireEyeGeneric.mg.49427650c54f8861
EmsisoftMemScan:Trojan.VBCrypt.B.Dam (B)
SentinelOneStatic AI – Malicious PE
JiangminWorm/Kolab.fyb
WebrootW32.Trojan.Gen
AviraTR/Crypt.PEPM.Gen
eGambitUnsafe.AI_Score_59%
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.VBCrypt.B.Dam
ZoneAlarmTrojan-Ransom.Win32.Xorist.fnavp
GDataMemScan:Trojan.VBCrypt.B.Dam
AhnLab-V3Trojan/Win32.VBKrypt.C143467
McAfeeArtemis!49427650C54F
MAXmalware (ai score=97)
VBA32Trojan.VBKrypt
MalwarebytesMalware.AI.133058023
PandaTrj/CI.A
RisingTrojan.Generic@ML.100 (RDMK:V2Ac1aLTAVBhKr5liGbUMw)
YandexTrojan.VBKrypt!hU88j1ZQD4o
IkarusTrojan.Win32.Spyeye
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBKrypt.A!tr
AVGWin32:Trojan-gen

How to remove Malware.AI.133058023?

Malware.AI.133058023 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment