Malware

Malware.AI.1398126433 removal instruction

Malware Removal

The Malware.AI.1398126433 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1398126433 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.1398126433?


File Info:

name: FF06CB2F989EE463F3EC.mlw
path: /opt/CAPEv2/storage/binaries/8d1660ae22d795640982c88c091be380ca2a2d1772ac0462ac2160ed96c29203
crc32: D49A8969
md5: ff06cb2f989ee463f3ec9aefcb845535
sha1: 3eec60d051ae536844fa8ee105cc8010bce363e6
sha256: 8d1660ae22d795640982c88c091be380ca2a2d1772ac0462ac2160ed96c29203
sha512: 79f28907996ad9bddd05198213b68ea213cf63ea70f92016d271bd58f5f4421569aaf330db843f0cc04d4affba6ec30ab8c01428f706a092fe3c13892800c5f0
ssdeep: 49152:cvZUKDuur2XaexXHkBvQcjBFN+a+my5yOBh:OtaaemScjBPy5y
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1B9A56B42F6A447A4F1B78138CE3699DEE9793C810F345ADB025476692FB32D20A7F712
sha3_384: e67e990b679cccc5bc6b0830da8e8822c04f7c8e1314a0acbf478962e866ba3625ab8f746de456d66fdb6ee5a60fd02d
ep_bytes: 4883ec28e8cf0700004883c428e9f6fd
timestamp: 2019-12-25 16:05:42

Version Info:

0: [No Data]

Malware.AI.1398126433 also known as:

LionicTrojan.Win32.Keylogger.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Application.Keylogger.48
FireEyeGen:Variant.Application.Keylogger.48
ALYacGen:Variant.Application.Keylogger.48
MalwarebytesMalware.AI.1398126433
K7AntiVirusPassword-Stealer ( 005497ed1 )
AlibabaRiskWare:Win32/Ardamax.6a173bbf
K7GWPassword-Stealer ( 005497ed1 )
Cybereasonmalicious.f989ee
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/KeyLogger.Ardamax.NCJ
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Application.Keylogger.48
TencentWin32.Risk.Keylogger.Edxe
Ad-AwareGen:Variant.Application.Keylogger.48
EmsisoftGen:Variant.Application.Keylogger.48 (B)
ZillyaTrojan.Keylogger.Win32.65529
McAfee-GW-EditionBehavesLike.Win64.BadFile.vh
SophosGeneric PUA DO (PUA)
GDataGen:Variant.Application.Keylogger.48
MicrosoftTrojan:Win32/Occamy.C8D
AhnLab-V3Malware/Win64.RL_Generic.R304311
McAfeeGenericRXAA-AA!FF06CB2F989E
MAXmalware (ai score=72)
CylanceUnsafe
YandexTrojan.GenAsa!F0jH+3/tvL8
FortinetRiskware/Ardamax

How to remove Malware.AI.1398126433?

Malware.AI.1398126433 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment