Malware

Malware.AI.1509690988 removal guide

Malware Removal

The Malware.AI.1509690988 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1509690988 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.1509690988?


File Info:

name: 056572D630624E71BD3E.mlw
path: /opt/CAPEv2/storage/binaries/c51fece189265ca239417aa3ff729ed2aaf3d7a848016f885a990597df5621e1
crc32: EF023799
md5: 056572d630624e71bd3e303adef35c7a
sha1: 7e3b25cb3c120bb80c0f824c20c841a5af3a4413
sha256: c51fece189265ca239417aa3ff729ed2aaf3d7a848016f885a990597df5621e1
sha512: 13c256f6ed7a0e1fdea33309df978e584821c344de520ede55fb8ddc3de5c840bd944b1763ee9c2a18b112dba2249fc084da14bd3c9cbe46c1aabac28a217d05
ssdeep: 3072:ZDn5gaSYZT/OU1GDMJGww3OrrgnbrqcFwiENrbbcQ7Gk5eSrhdklXXDExFQVie22:ZDn6ahSOonZFZ+rbbcQNSlXOyinqT
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1705412A1DD03C4FAF90325B018C9EBBF153FABD28521CCB9EB84C455EE72B31A625119
sha3_384: 77ff978f36e98ae3819e20825d1362b837f224060c2b47833c8e8ed6a8ff04b5a20f4017ef3445238158c70beac3423a
ep_bytes: c7056050440000000000e9a1fcffff90
timestamp: 2023-08-09 18:44:55

Version Info:

0: [No Data]

Malware.AI.1509690988 also known as:

BkavW32.Common.EF6C3A1B
LionicTrojan.Win32.Marte.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Shellcode.Loader.Marte.Z.059BD662
FireEyeGeneric.mg.056572d630624e71
McAfeeArtemis!056572D63062
MalwarebytesMalware.AI.1509690988
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
BitDefenderGeneric.Shellcode.Loader.Marte.Z.059BD662
AvastWin32:MalwareX-gen [Trj]
EmsisoftGeneric.Shellcode.Loader.Marte.Z.059BD662 (B)
VIPREGeneric.Shellcode.Loader.Marte.Z.059BD662
TrendMicroBackdoor.Win32.BRUTEL.YXDHOZ
McAfee-GW-EditionArtemis
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataGeneric.Shellcode.Loader.Marte.Z.059BD662
MAXmalware (ai score=83)
ArcabitGeneric.Shellcode.Loader.Marte.Z.059BD662
MicrosoftTrojan:Win32/Wacatac.B!ml
BitDefenderThetaGen:NN.ZexaF.36662.rKY@aSROBSn
ALYacGeneric.Shellcode.Loader.Marte.Z.059BD662
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallBackdoor.Win32.BRUTEL.YXDHOZ
MaxSecureTrojan.Malware.215941663.susgen
FortinetW32/PossibleThreat
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Malware.AI.1509690988?

Malware.AI.1509690988 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment