Malware

Malware.AI.1426818111 (file analysis)

Malware Removal

The Malware.AI.1426818111 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1426818111 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Malware.AI.1426818111?


File Info:

name: B3D559404E50AC762C9B.mlw
path: /opt/CAPEv2/storage/binaries/b875b3c3d9f21a20c5b00ff1b2b44800500b4b7eb178fb3e1fe647bb2b0a4bad
crc32: F43DAD73
md5: b3d559404e50ac762c9b2717cf63dfab
sha1: a40fab88bbb4255caa85b663924d78c4dc2d6d11
sha256: b875b3c3d9f21a20c5b00ff1b2b44800500b4b7eb178fb3e1fe647bb2b0a4bad
sha512: d95e81000f8521c0c941824ffc9f67d6703601438990d10e494f2b200d4e135ea1e2b530ea9994cc60716ad0140bd7b0eb282ce40beee996b0071c7be6c9a105
ssdeep: 48:qd7/U3eayJ1DhJaHMpl//JwuqnijDGrsEVnQBG/RA8lGUZ2CS7jLyUF:DAVuHiXFZjxAnQWRIUZ2CmX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11FB1F9834F9255C3C1524B365A66C918AFF9901E30578E4BF78E47A72EA82C6C3123A1
sha3_384: c566dca3393ea5f9ac0b63dbb33526a3357a0ffed9ad17319b009cde0cdf03651e0863902fab4373685edd91859e4e3a
ep_bytes: 558bec81ec3808000053565733db53ff
timestamp: 2014-01-22 09:46:55

Version Info:

0: [No Data]

Malware.AI.1426818111 also known as:

LionicTrojan.Win32.Generic.lY5V
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.100150
FireEyeGeneric.mg.b3d559404e50ac76
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.GenericKDZ.100150
MalwarebytesMalware.AI.1426818111
ZillyaDownloader.SmallGen.Win32.2
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0059acf21 )
AlibabaTrojan:Win32/Upatre.b686
K7GWTrojan-Downloader ( 0059acf21 )
Cybereasonmalicious.04e50a
BitDefenderThetaGen:NN.ZexaF.36662.auW@a85DQwli
CyrenW32/Upatre.OA.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDownloader.Waski.A
APEXMalicious
ClamAVWin.Downloader.Upatre-9789941-0
BitDefenderTrojan.GenericKDZ.100150
NANO-AntivirusTrojan.Win32.DownLoad3.jsxunr
SUPERAntiSpywareTrojan.Agent/Gen-Upatre
AvastWin32:Waski-A [Trj]
EmsisoftTrojan.GenericKDZ.100150 (B)
F-SecureHeuristic.HEUR/AGEN.1315808
DrWebTrojan.DownLoad3.28161
VIPRETrojan.GenericKDZ.100150
TrendMicroTROJ_GEN.R002C0DHP23
McAfee-GW-EditionBehavesLike.Win32.Generic.zt
Trapminemalicious.moderate.ml.score
SophosMal/EncPk-ACO
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.10QINFY
JiangminTrojanDownloader.Waski.aw
AviraHEUR/AGEN.1315808
Antiy-AVLTrojan[Downloader]/Win32.Small
XcitiumTrojWare.Win32.TrojanDownloader.Waski.AQ@7t0jau
ArcabitTrojan.Generic.D18736
ZoneAlarmHEUR:Trojan-Downloader.Win32.Convagent.gen
MicrosoftTrojan:Win32/Waski.A!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Upatre.R258184
Acronissuspicious
MAXmalware (ai score=88)
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DHP23
TencentTrojan-Downloader.Win32.Waski.hg
YandexTrojan.GenAsa!EeB+TI3QYUc
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Waski.A!tr
AVGWin32:Waski-A [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.1426818111?

Malware.AI.1426818111 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment