Malware

How to remove “Malware.AI.1343538159”?

Malware Removal

The Malware.AI.1343538159 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1343538159 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.1343538159?


File Info:

name: 482CEE76D0CAF51506C1.mlw
path: /opt/CAPEv2/storage/binaries/2ba667e86efe8943134587bd380f248c67b83f08112136e645e96394f2f88dce
crc32: 99533C99
md5: 482cee76d0caf51506c1ed723a180e86
sha1: f9fc5e5fb3e690e94f90d383bc183d93da3b7991
sha256: 2ba667e86efe8943134587bd380f248c67b83f08112136e645e96394f2f88dce
sha512: 6283b076724c1259ae8e61e75c2e4f8228a15090f88f8bf5ce70cfaf2368e95265eb3fa09d3baaacfd662954828298416dafcb808af4afdb1b566d3376f716cc
ssdeep: 98304:BDU+6lqxONesqOYNVZpis6uipouwzlbGT9xwMwyyKS9G1oxxF:SqsNesOQs6szlbGxqMwyyKS9G1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18046AF11F162C1B1C07639F0E5AFBBFA623C76634718A6DF6F844E587839290691A337
sha3_384: b8b225028ddd9ec1ef78a45cb8a9a9645a1823f23f5c50df0fe357cfa27ef4b6ba42ff88172a0be5194bf6c833ee321f
ep_bytes: e8ea800000e9000000006a146888ed77
timestamp: 2022-11-12 07:29:38

Version Info:

Comments: 本程序由柏林之地(GBT_Setup&tools),任何人不得用于木马,病毒,后门等用途!由此造成一切后果,本人不负任何及连带责任!
CompanyName: 柏林之地(GBT_Setup&tools)
FileDescription: 柏林之地(GBT_Setup&tools)
FileVersion: 1,2,0,8
InternalName: Setup.exe
LegalCopyright: 版权所有 乐赏 1998-2022
LegalTrademarks: China.tianchao
OriginalFilename: Setup.exe
PrivateBuild: ‘ WORLD ORDER
ProductName: 世界
ProductVersion: 1.2.0.8
SpecialBuild: 不在等待
Translation: 0x0804 0x04b0

Malware.AI.1343538159 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Scar.mip4
Elasticmalicious (high confidence)
Cylanceunsafe
SangforTrojan.Win32.Save.a
Cybereasonmalicious.fb3e69
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
ClamAVWin.Malware.Blackmoon-9951484-0
AvastWin32:Evo-gen [Trj]
SophosGeneric Reputation PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.482cee76d0caf515
GDataWin32.Trojan.PSE.10V60DG
JiangminTrojan.Bsymem.auk
GoogleDetected
Antiy-AVLTrojan/Win32.FlyStudio.a
XcitiumTrojWare.Win32.Agent.OSCF@5rs7jr
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXAA-AA!482CEE76D0CA
VBA32BScope.Trojan.Download
MalwarebytesMalware.AI.1343538159
RisingTrojan.Generic@AI.100 (RDML:TU9r7PukGbr8HOBWLLz6zg)
MaxSecureTrojan.Malware.121218.susgen
FortinetRiskware/Application
BitDefenderThetaGen:NN.ZexaE.36196.@x0@aet1OWfb
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Malware.AI.1343538159?

Malware.AI.1343538159 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment