Malware

Malware.AI.1379843 removal tips

Malware Removal

The Malware.AI.1379843 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1379843 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.1379843?


File Info:

name: 920A5CDA22C9AAFCF9CA.mlw
path: /opt/CAPEv2/storage/binaries/41c481d7b10ee92869ec2328976cf328388d5afbb492813878832a92961a56f1
crc32: 6EF31CC6
md5: 920a5cda22c9aafcf9ca9077fb1bccc0
sha1: 932144eef8297322b88d965f8c11402194ff945a
sha256: 41c481d7b10ee92869ec2328976cf328388d5afbb492813878832a92961a56f1
sha512: c5383c00321f9433831e78f28ec298b3fa391e1a5e85a3b6774cb90d370faad8aa242ce6ec19ff65efdb6b7c60154a82db98c8106c1b90e00cc846780ed2f775
ssdeep: 12288:Uzy6rRxEh2nS4EYrY5YxL9rzLm3ICAhdfhc1ubXDqPgmBmzH7FaWv1d:n6rTWgrs5YxL9rXoYtiPgNr7F7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E7F41248BAC3C1B2C4011730657F61B2A639FF122B35A29AD7DD045A1C717C2B96E6FB
sha3_384: 49f276b005591213862a2b4894b5fc42a32178371ac7a1ebed571457403efa3e63ad88c14728a1098bff7082b19d1857
ep_bytes: e82f2b000050e83f3101000000000090
timestamp: 2007-05-22 04:59:14

Version Info:

0: [No Data]

Malware.AI.1379843 also known as:

BkavW32.Common.29087EEF
LionicTrojan.Win32.Generic.4!c
CAT-QuickHealTrojan.GenericIH.S11460785
SkyhighBehavesLike.Win32.Generic.bc
McAfeeArtemis!920A5CDA22C9
MalwarebytesMalware.AI.1379843
ZillyaTrojan.Swizzor.Win32.160028
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.ef8297
Elasticmalicious (moderate confidence)
CynetMalicious (score: 100)
SUPERAntiSpywareTrojan.Agent/GenericKD
Trapminesuspicious.low.ml.score
Antiy-AVLTrojan/Win32.TSGeneric
Kingsoftmalware.kb.a.810
MicrosoftTrojan:Win32/Zpevdo.B
VBA32Trojan.Swizzor
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H06L723
YandexTrojan.GenAsa!a6tT3JyIj90
SentinelOneStatic AI – Malicious SFX
DeepInstinctMALICIOUS

How to remove Malware.AI.1379843?

Malware.AI.1379843 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment