Malware

Should I remove “Malware.AI.1475761998”?

Malware Removal

The Malware.AI.1475761998 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1475761998 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.1475761998?


File Info:

name: B8F76DB192FDAF8D4E43.mlw
path: /opt/CAPEv2/storage/binaries/e0cf74e2efb13df38aad543c65e09246d29b902c47f3b5e429d90c79e3fe76e4
crc32: 42F783EA
md5: b8f76db192fdaf8d4e4329df9f5f17b1
sha1: 8809b6b8cba6e962162b819bffb989208c795dd2
sha256: e0cf74e2efb13df38aad543c65e09246d29b902c47f3b5e429d90c79e3fe76e4
sha512: 7281eb4fa2b583767ae0412c9fd12caff2656be6ff4bd07677472b72f91307e73c0440e33d902e7bd38b3679b302e9d778b2ac667c0da731cd03ac2f0b1aba4c
ssdeep: 768:31KvZjM0qsC2QwpveSUtbgRqvMvogYZo4nFoyd4uQvwFB9xAha5:EMjsC+teSIblgmpFBvQvK0
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1F173E1B69BC8D5BCC642EB35B6750926F4FC785421A287FE85DFA88D1045C82C8D0F9B
sha3_384: 6e2ba8e613832f1a01422ee208cc79945621ca3c4ff0af34ea5ec1750657960c127c811f239ccbe59fe99b8b843389fa
ep_bytes: 60e803000000e9eb045d4555c3e80100
timestamp: 2005-03-13 07:26:02

Version Info:

0: [No Data]

Malware.AI.1475761998 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.b8f76db192fdaf8d
SkyhighBehavesLike.Win32.Generic.lt
McAfeeRDN/Generic.dx
MalwarebytesMalware.AI.1475761998
SangforTrojan.Win32.Agent.Vll4
AlibabaWorm:Win32/Deborm.6c2bb824
Cybereasonmalicious.8cba6e
BitDefenderThetaGen:NN.ZexaF.36792.eCWbaSb9sSp
VirITTrojan.Win32.Small.CBW
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:Trojan-gen
Trapminemalicious.moderate.ml.score
SophosML/PE-A
IkarusWorm.Win32.Deborm
VaristW32/Trojan.OBFZ-4441
Kingsoftmalware.kb.a.1000
GoogleDetected
VBA32Trojan.Wacatac
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H06JT23
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Malware.AI.1475761998?

Malware.AI.1475761998 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment