Malware

What is “Malware.AI.1419486108”?

Malware Removal

The Malware.AI.1419486108 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1419486108 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Malware.AI.1419486108?


File Info:

name: 9CDBA08DFC72651AC1E1.mlw
path: /opt/CAPEv2/storage/binaries/a558387ab6d12f1eae5bb2a376bd0c300b3cd970274258dc223dd229464f17c2
crc32: AED70A77
md5: 9cdba08dfc72651ac1e1a02e9458364e
sha1: d305d31f8f2522c2f170ffecab5beee875bb4121
sha256: a558387ab6d12f1eae5bb2a376bd0c300b3cd970274258dc223dd229464f17c2
sha512: e6453fdf9fecf213489cd5abc5a1f12d5ced018628df304b3c3b9ccf269dd87d1eaab7cc5e9f7676a1f045200436afa86ccbb7cec433e51d8a02d50cd072383a
ssdeep: 1536:fofRQE6/sx7MWRCLlKeMmW7upUA50n9dCWpr0lVx4xNWmHCJ:wqEmQ7MWRCLlKeNWapUembVQx4PHC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T186D3397BB3C193A9E12E1A3069D7C6FA6753381D4F87865BB55033253C30E305EA6A1B
sha3_384: c46fba3385d31bdcc70dda940f2c1ceee739863fb2db9a59639f6aece7cc83ab7c2a205cd30238723cfeafdd84f5a921
ep_bytes: 68481e4000e8eeffffff000000000000
timestamp: 2019-06-01 22:24:19

Version Info:

Translation: 0x0409 0x04b0
CompanyName: Lusnich
ProductName: Cliente
FileVersion: 1.00
ProductVersion: 1.00
InternalName: 1
OriginalFilename: 1.exe

Malware.AI.1419486108 also known as:

MicroWorld-eScanGen:Variant.Johnnie.178172
FireEyeGeneric.mg.9cdba08dfc72651a
CAT-QuickHealTrojan.VBCrypt.MF.1072
McAfeeArtemis!9CDBA08DFC72
MalwarebytesMalware.AI.1419486108
ZillyaTrojan.XRat.Win32.64
K7AntiVirusSpyware ( 0056cb291 )
AlibabaTrojan:Win32/Gorgon.f6f218de
K7GWSpyware ( 0056cb291 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.34294.im0@ayXjJxei
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/XRat.AG
TrendMicro-HouseCallTROJ_GEN.R002C0GIG21
Paloaltogeneric.ml
KasperskyTrojan.Win32.Gorgon.awz
BitDefenderGen:Variant.Johnnie.178172
NANO-AntivirusTrojan.Win32.Gorgon.fqzfko
SUPERAntiSpywareTrojan.Agent/Gen-Vbject
AvastWin32:FakeVimes-B [Trj]
TencentWin32.Trojan.Gorgon.Hyad
Ad-AwareGen:Variant.Johnnie.178172
SophosML/PE-A
TrendMicroTROJ_GEN.R002C0GIG21
McAfee-GW-EditionBehavesLike.Win32.VBObfus.ct
SentinelOneStatic AI – Suspicious PE
EmsisoftGen:Variant.Johnnie.178172 (B)
IkarusTrojan.Win32.VBKrypt
GDataGen:Variant.Johnnie.178172
JiangminTrojan/Lis.bo
eGambitUnsafe.AI_Score_99%
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.2BB617E
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
AhnLab-V3Malware/Win32.RL_Generic.R277866
VBA32Trojan.Fuerboos
ALYacGen:Variant.Johnnie.178172
CylanceUnsafe
APEXMalicious
YandexTrojan.Gorgon!Sdr6SXaV4a8
MAXmalware (ai score=100)
FortinetW32/XRat.AG!tr
AVGWin32:FakeVimes-B [Trj]
PandaTrj/GdSda.A

How to remove Malware.AI.1419486108?

Malware.AI.1419486108 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment