Malware

What is “Malware.AI.1409158143”?

Malware Removal

The Malware.AI.1409158143 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1409158143 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Malware.AI.1409158143?


File Info:

name: 39B74E34DC460D262685.mlw
path: /opt/CAPEv2/storage/binaries/c133517bb41b8444e3c34af0445d9962004f49a3134f845c74d7848d604da991
crc32: 6E7685AA
md5: 39b74e34dc460d262685c11819ad3fe8
sha1: 75a7fca6b7520d8d7675fee3e99db10f9dd04c13
sha256: c133517bb41b8444e3c34af0445d9962004f49a3134f845c74d7848d604da991
sha512: 63ce082916dd76b4f775542f4b298bad0acad443715b28b5e7202da8033088751375c63cb378b9a40343311fe3ec64fd45cdb4fcafef041a205038d73447892a
ssdeep: 12288:Jq5WXZquYId425BZnjwTJBSam9fMFKPdjmGvgUTn0TNW:I5Wpqf2ZjwTJa4KPRdvtnIW
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CEB4123C9FB841EADBAC323136B31E48D1CB45754403966B3EDD47916F876188827BBA
sha3_384: 8b6b659566f9def76d19660a8c2d4d0803b0aee04cadb5f349884d8db0981541d0bd750cee8a88a3d86debb99feafe6b
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-08-13 10:29:41

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: server
FileVersion: 1.0.0.0
InternalName: server1.exe
LegalCopyright: Copyright © 2015
LegalTrademarks:
OriginalFilename: server1.exe
ProductName: server
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.1409158143 also known as:

BkavW32.AIDetectNet.01
CynetMalicious (score: 99)
FireEyeGeneric.mg.39b74e34dc460d26
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
McAfeeGenericRXBQ-MG!39B74E34DC46
CylanceUnsafe
VIPREGen:Variant.MSILPerseus.1689
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004b92f41 )
K7GWTrojan ( 004b92f41 )
Cybereasonmalicious.4dc460
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Injector.CKR
APEXMalicious
ClamAVWin.Packed.Lynx-6899009-0
KasperskyHEUR:Trojan.MSIL.Agent.gen
BitDefenderGen:Variant.MSILPerseus.1689
NANO-AntivirusTrojan.Win32.Dwn.eklhvn
MicroWorld-eScanGen:Variant.MSILPerseus.1689
AvastWin32:RATX-gen [Trj]
Ad-AwareGen:Variant.MSILPerseus.1689
EmsisoftTrojan.Injector (A)
DrWebTrojan.DownLoader22.12097
McAfee-GW-EditionGenericRXBQ-MG!39B74E34DC46
SophosML/PE-A + Mal/MSILInj-AM
IkarusTrojan.MSIL.Crypt
GDataGen:Variant.MSILPerseus.1689
AviraTR/Dropper.Gen
ArcabitTrojan.MSILPerseus.D699
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GoogleDetected
AhnLab-V3Malware/Win32.RL_Generic.C3606712
Acronissuspicious
ALYacGen:Variant.MSILPerseus.1689
MAXmalware (ai score=82)
MalwarebytesMalware.AI.1409158143
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:Wucaruen14NcWfSKPWZOyg)
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Injector.BFO!tr
BitDefenderThetaGen:NN.ZemsilF.34592.Fm0@aa7u3lk
AVGWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.1409158143?

Malware.AI.1409158143 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment