Malware

Malware.AI.151278695 removal

Malware Removal

The Malware.AI.151278695 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.151278695 virus can do?

  • Unconventionial language used in binary resources: Korean
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.151278695?


File Info:

name: F4220D1BCF4BFE7A0960.mlw
path: /opt/CAPEv2/storage/binaries/b123cc2c1052e9fae9a8ac1431ad8c9540c716466c9cb25459b09a1fbd012bf8
crc32: 89ECC36F
md5: f4220d1bcf4bfe7a0960163e800c96a9
sha1: b9f0a2ba37768a1d38d9cced68114cb754cc65d2
sha256: b123cc2c1052e9fae9a8ac1431ad8c9540c716466c9cb25459b09a1fbd012bf8
sha512: 2baa825d7c1d90ad1ecc78b92807fbb1c6f9facd9c3190dd194deba44e4e797659682dbdb1fcdcc4953047deb4511a5344c15cfc41af11d526b9915e3c6bd49e
ssdeep: 3072:fVvKTBfyuvQniOZagrNucRRuxKECyilNdAhdec3S:fVvKTBK+E/Rux0yKuhN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1613419147BF4E661D17A89304EE2C7980AA6FD24DE75874B31C93B4F2D32AA05F40BD6
sha3_384: fc1a638dcc268cd6b57344a1e8f641fdccefcd8fdf1d53e3b82b6c8a772d23b17e50e05e267750b9dbd36e8ba12d068c
ep_bytes: 60be005045008dbe00c0faff5783cdff
timestamp: 2011-11-02 13:24:41

Version Info:

CompanyName: ESTsoft Corp.
FileDescription: ALZip Self Extractor
FileVersion: 11, 3, 24, 0
InternalName: EGGSFX
LegalCopyright: Copyright (c) 1999 - present ESTsoft Corp. All right reserved.
OriginalFilename: EGGSFX.sfx
ProductName: ALZip
ProductVersion: 11, 3, 24, 0
Translation: 0x0412 0x04b0

Malware.AI.151278695 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanTrojan.GenericKDZ.102322
FireEyeGeneric.mg.f4220d1bcf4bfe7a
ALYacTrojan.GenericKDZ.102322
MalwarebytesMalware.AI.151278695
SangforSuspicious.Win32.Save.a
ArcabitTrojan.Generic.D18FB2
BitDefenderThetaGen:NN.ZexaF.36662.om0@am@DCWmO
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKDZ.102322
AvastWin32:Malware-gen
EmsisoftTrojan.GenericKDZ.102322 (B)
VIPRETrojan.GenericKDZ.102322
McAfee-GW-EditionBehavesLike.Win32.RealProtect.dt
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Win32.SGeneric
XcitiumPacked.Win32.MUPX.Gen@24tbus
MicrosoftTrojan:Win32/Wacatac.B!ml
ViRobotTrojan.Win.Z.Agent.237568.AIE
GDataTrojan.GenericKDZ.102322
AhnLab-V3Malware/Win.Generic.C5192307
McAfeeArtemis!F4220D1BCF4B
MAXmalware (ai score=88)
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH09HA23
MaxSecureTrojan.Malware.185125912.susgen
FortinetW32/ULPM.2C75!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.151278695?

Malware.AI.151278695 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment