Malware

Malware.AI.1433364946 removal

Malware Removal

The Malware.AI.1433364946 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1433364946 virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.1433364946?


File Info:

name: 4B9B01A97508DA119FB1.mlw
path: /opt/CAPEv2/storage/binaries/bd350188989159c3d81869fdce19f0fd0794bf22c203eae42ec8749e8ec387b1
crc32: 8C9A4240
md5: 4b9b01a97508da119fb1030573579625
sha1: c452ba6b29df025024ec78ae11e60a328e6d29bc
sha256: bd350188989159c3d81869fdce19f0fd0794bf22c203eae42ec8749e8ec387b1
sha512: 031ec340828872b5fffe997d6f0329a2bb5f888da970840c73c6605eb2494144002af63f2e02805093550f756552b5c05ffae57b2ee848800a4a3687a5bdf3c2
ssdeep: 768:7GtyT4CcBABTySIMmHdV1MkJFDonDRvFYi3xe:6S4BBAQSI71MqDuDRvF73xe
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E8D2BF268BE0C832CDBF4A7169A1230616B4FA4C9659D30F54CD81177B837D11FE5BE2
sha3_384: ae80e7afec15e5f13d9254d504847fc905551e6507b9dd0d0a931e8337d810346269f6b93370d3e91f91c873964dbeab
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-01-24 17:50:24

Version Info:

Translation: 0x0000 0x04b0
Comments: Secure, manage, and trade blockchain assets.
CompanyName: Exodus Movement Inc
FileDescription: Secure, manage, and trade blockchain assets.
FileVersion: 21.10.25.0
InternalName: Nyszfp.exe
LegalCopyright: Copyright © 2021 Exodus Movement Inc
LegalTrademarks:
OriginalFilename: Nyszfp.exe
ProductName: Secure, manage, and trade blockchain assets.
ProductVersion: 21.10.25.0
Assembly Version: 21.10.25.0

Malware.AI.1433364946 also known as:

LionicTrojan.MSIL.Stealer.l!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.48283824
FireEyeTrojan.GenericKD.48283824
McAfeeRDN/Generic PWS.y
CylanceUnsafe
SangforTrojan.MSIL.Stealer.gen
K7AntiVirusTrojan-Downloader ( 0058de741 )
K7GWTrojan-Downloader ( 0058de741 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.KHM
TrendMicro-HouseCallTROJ_GEN.R002H0CB722
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderTrojan.GenericKD.48283824
AvastWin32:PWSX-gen [Trj]
TencentMsil.Trojan-downloader.Agent.Pfjv
Ad-AwareTrojan.GenericKD.48283824
EmsisoftTrojan.GenericKD.48283824 (B)
McAfee-GW-EditionRDN/Generic PWS.y
SophosMal/Generic-S
IkarusTrojan-Downloader.MSIL.Small
GDataWin32.Trojan.Agent.2UN1PP
AviraTR/Dldr.Agent.xaqur
MAXmalware (ai score=81)
Antiy-AVLTrojan/Generic.ASMalwS.3523A0B
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Generic.D2E0C0B0
ViRobotTrojan.Win32.Z.Win.30688
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4932580
VBA32TScope.Trojan.MSIL
ALYacTrojan.GenericKD.48283824
MalwarebytesMalware.AI.1433364946
APEXMalicious
YandexTrojan.Agent!OQOI9k7jgnA
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.KHM!tr.dldr
AVGWin32:PWSX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.1433364946?

Malware.AI.1433364946 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment