Malware

Should I remove “Malware.AI.1391872233”?

Malware Removal

The Malware.AI.1391872233 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1391872233 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1391872233?


File Info:

name: 530664A595143CC50D26.mlw
path: /opt/CAPEv2/storage/binaries/aa8550567ad5ec00109aa1c3607578519f9a7b7cef1115b8e27492d0ebd30bab
crc32: 1AD53763
md5: 530664a595143cc50d26b6b29e402c8d
sha1: 359e04c24fe3a392dcd894e5d1600c3521d062d8
sha256: aa8550567ad5ec00109aa1c3607578519f9a7b7cef1115b8e27492d0ebd30bab
sha512: a653a9cba3dc4253b934854583939c27fa2b2c1561a7f37e10e47d9d8e899a8a1c79224b645ac071ff69056a42ffb1877babcdf08d160128b001b9f071723a0f
ssdeep: 96:AAvIz7TXDsENqld7/RSu0wmw8woBlOF1+7Tv17r4+TeG3KeG30vJstd10SBO+qiV:yP5Nmp/RgwmdBkM2+TWIvJstLbNPM
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T118927242BA2D7822E3A48A3A26B7DB6645D07D1C9FDE0477A1F03F8E48B43507C94767
sha3_384: 9eaf1774dace84fad142f921c545a7810add43b31a8d66c568e59c81506c8f2efb8bffae4d147be275e32e15a53fe79a
ep_bytes: b86010400080300f403d7b3040007ef5
timestamp: 2011-04-02 22:07:11

Version Info:

Translation: 0x0409 0x04b0
ProductName: IBS
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Stub
OriginalFilename: Stub.exe

Malware.AI.1391872233 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.VBKrypt.ljk0
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader4.52579
MicroWorld-eScanGen:Trojan.Heur.VB.bm0@e0djT4mi
McAfeeGenericRXAA-AA!530664A59514
MalwarebytesMalware.AI.1391872233
ZillyaBackdoor.CPEX.Win32.26852
SangforSuspicious.Win32.Save.a
AlibabaPacked:Win32/PolyCrypt.b457b6b1
Cybereasonmalicious.595143
BitDefenderThetaAI:Packer.33EF25AD1F
VirITTrojan.Win32.Inject.EBX
CyrenW32/Acillatem.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/TrojanDropper.VB.NPI
APEXMalicious
CynetMalicious (score: 100)
KasperskyPacked.Win32.PolyCrypt.b
BitDefenderGen:Trojan.Heur.VB.bm0@e0djT4mi
NANO-AntivirusTrojan.Win32.PolyCrypt.cxdfin
AvastWin32:Crypt-JAY [Trj]
TencentWin32.Packed.Polycrypt.Rimw
TACHYONWorm/W32.Nuwar.20480.AH
EmsisoftGen:Trojan.Heur.VB.bm0@e0djT4mi (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
VIPREGen:Trojan.Heur.VB.bm0@e0djT4mi
TrendMicroMal_Poison3
McAfee-GW-EditionBehavesLike.Win32.Generic.mz
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.530664a595143cc5
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.Heur.VB.bm0@e0djT4mi
JiangminPacked.PolyCrypt.gfu
WebrootW32.Trojan.Polycrypt.Gen
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan[Packed]/Win32.PolyCrypt
XcitiumTrojWare.Win32.VB.fmmu@4aq4ot
ArcabitTrojan.Heur.VB.E9BDF5
ViRobotTrojan.Win32.A.PolyCrypt.20480.AN
ZoneAlarmPacked.Win32.PolyCrypt.b
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.Refroso.R558895
Acronissuspicious
VBA32SScope.Trojan.VBRA.15849
ALYacGen:Trojan.Heur.VB.bm0@e0djT4mi
MAXmalware (ai score=100)
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallMal_Poison3
RisingWorm.VBNA!8.2BE (TFE:1:w43mJeB9OtO)
YandexTrojan.GenAsa!UifcV7xRcng
IkarusPacker.Win32.PolyCrypt
MaxSecureTrojan.Malware.15041.susgen
FortinetW32/PolyCrypt.B!tr
AVGWin32:Crypt-JAY [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.1391872233?

Malware.AI.1391872233 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment