Malware

Malware.AI.1445891925 removal tips

Malware Removal

The Malware.AI.1445891925 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1445891925 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.1445891925?


File Info:

name: 4198C32CD9ED64F1AFF8.mlw
path: /opt/CAPEv2/storage/binaries/aec129c9c18a1feafb2cf9328d4ebe857f93949bde05001e839e8dc73540445c
crc32: C93837E0
md5: 4198c32cd9ed64f1aff81b195704af09
sha1: 0d974930997b87405e69df600fb6608113d7e785
sha256: aec129c9c18a1feafb2cf9328d4ebe857f93949bde05001e839e8dc73540445c
sha512: f0fef6acbbab3de2bd629693b7da803b2af74102463c1c770afa5d9c5f5c2d41b566af0dac05398e7944b38f93032140b19a1a14d72b647910b4bd07d9727a8a
ssdeep: 1536:PNkRtqtBVL5nPn5QaTNUbaxaZ65gX4Pv9u2y0aZAbs/nLziow28fz+DliO3MxjKP:eGbVIkUbaxHg+g/nvif7h14
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12F0473AB3FB56448F4685A302DF392F23792AC8C4A0742469B6471385FFFE325E25653
sha3_384: 274ee63fa1c9c3a447354bc9e4eeb446121a58b07cbc638b892e0c25113cc302e25b04e4c5c911e7a8e5abc64b8086f8
ep_bytes: 68ac124000e8f0ffffff000000000000
timestamp: 1995-09-24 14:37:27

Version Info:

0: [No Data]

Malware.AI.1445891925 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.98480
FireEyeGeneric.mg.4198c32cd9ed64f1
CAT-QuickHealTrojan.Beebone.D
ALYacTrojan.GenericKDZ.98480
Cylanceunsafe
SangforSuspicious.Win32.Save.vb
CrowdStrikewin/malicious_confidence_100% (W)
K7GWEmailWorm ( 003c363a1 )
K7AntiVirusEmailWorm ( 003c363a1 )
BitDefenderThetaGen:NN.ZevbaF.36196.kqZ@aOQgWNd
CyrenW32/VBObfus.D.gen!Eldorado
SymantecW32.Changeup
ESET-NOD32Win32/AutoRun.VB.AVA
APEXMalicious
ClamAVWin.Trojan.Vobfus-36
KasperskyWorm.Win32.WBNA.ipa
BitDefenderTrojan.GenericKDZ.98480
NANO-AntivirusTrojan.Win32.Jorik.chvyya
TencentWorm.Win32.Wbna.hb
SophosMal/VBCheMan-J
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Autoruner1.15312
VIPRETrojan.GenericKDZ.98480
TrendMicroTROJ_AGENT_009717.TOMB
McAfee-GW-EditionBehavesLike.Win32.Generic.ct
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKDZ.98480 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Jorik.gjag
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumWorm.Win32.VB.AVA@4paxih
ArcabitTrojan.Generic.D180B0
ViRobotTrojan.Win32.A.VB.139264.Q
ZoneAlarmWorm.Win32.WBNA.ipa
GDataTrojan.GenericKDZ.98480
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Symmi.139264
Acronissuspicious
VBA32SScope.Malware-Cryptor.VBCR.1141
MAXmalware (ai score=84)
DeepInstinctMALICIOUS
MalwarebytesMalware.AI.1445891925
TrendMicro-HouseCallTROJ_AGENT_009717.TOMB
RisingWorm.VobfusEx!1.99D9 (CLASSIC)
YandexTrojan.GenAsa!Wl2iBIi5ppU
IkarusTrojan.Win32.Jorik
FortinetW32/VBObfus.AU!tr
Cybereasonmalicious.0997b8
PandaW32/Vobfus.GEW.worm

How to remove Malware.AI.1445891925?

Malware.AI.1445891925 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment