Malware

Malware.AI.1437529990 information

Malware Removal

The Malware.AI.1437529990 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1437529990 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the PyInstaller malware family

How to determine Malware.AI.1437529990?


File Info:

name: B9B6D888CAC6F7DF5FB2.mlw
path: /opt/CAPEv2/storage/binaries/801e5ccb9b21b833d1af0a77081a781f1ccfe439892606855d255d08ce98204b
crc32: BDD3E018
md5: b9b6d888cac6f7df5fb2b02bdff1cb9a
sha1: 1344792a9b972e852cce6f08aebc0e4ac5e654a0
sha256: 801e5ccb9b21b833d1af0a77081a781f1ccfe439892606855d255d08ce98204b
sha512: c334ba42f7fbd0eb23940b06770f853ad9c9e5a49666f6cf19e730c501a2cbe0922ac08fc388635af6d7acc3cf89aa5b46d920d149397fa3610fb1dd7e2a46b9
ssdeep: 49152:8olZTEScd0D9JtbIYLvvvUYQRIvJJQ+8WS/1DLC8GAbefS:j1m01bIYjsYQ+vJJQPDdS2
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T193952399AB651CF9F4F601368C42811AD6B3F4760B30D65F076895376F23AE0387BBA1
sha3_384: f8f18ab5610de5569b7d1cadb51d510e90b74e1b400bad71787bdf8760e4670ca1e863068258a3b0304698464851c7d8
ep_bytes: 4883ec28e8f70400004883c428e972fe
timestamp: 2021-08-01 04:39:37

Version Info:

0: [No Data]

Malware.AI.1437529990 also known as:

LionicTrojan.Python.Nuker.i!c
DrWebPython.Stealer.196
MicroWorld-eScanTrojan.GenericKD.47498803
FireEyeTrojan.GenericKD.47498803
McAfeeArtemis!B9B6D888CAC6
K7AntiVirusTrojan ( 005784931 )
AlibabaTrojanPSW:Win32/Almi_Disco.g
K7GWTrojan ( 005784931 )
SymantecTrojan.Gen.MBT
ESET-NOD32Python/PSW.Agent.HB
TrendMicro-HouseCallTROJ_GEN.R002C0PKT21
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-PSW.Python.Nuker.gen
BitDefenderTrojan.GenericKD.47498803
AvastFileRepMalware
TencentWin32.Trojan-qqpass.Qqrob.Phzy
Ad-AwareTrojan.GenericKD.47498803
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0PKT21
McAfee-GW-EditionBehavesLike.Win64.AdwareInstCap.tc
EmsisoftTrojan.GenericKD.47498803 (B)
GDataTrojan.GenericKD.47498803
AviraTR/PSW.Agent.rxqjz
MAXmalware (ai score=81)
GridinsoftRansom.Win64.Sabsik.sa
ArcabitTrojan.Generic.D2D4C633
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ALYacTrojan.GenericKD.47498803
VBA32TrojanPSW.Python
MalwarebytesMalware.AI.1437529990
FortinetPython/Agent.HB!tr.spy
AVGFileRepMalware

How to remove Malware.AI.1437529990?

Malware.AI.1437529990 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment