Malware

What is “Malware.AI.1549441924”?

Malware Removal

The Malware.AI.1549441924 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1549441924 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1549441924?


File Info:

name: AF456F66EAEE586BD03C.mlw
path: /opt/CAPEv2/storage/binaries/095820cd115c2f6e10b43873ceeb927a96c7e7445560fad822ae23886fef7823
crc32: 58DB5929
md5: af456f66eaee586bd03c50459ab5e26b
sha1: 283a956cea5273cfe7033da7bcc6f416fe48f8eb
sha256: 095820cd115c2f6e10b43873ceeb927a96c7e7445560fad822ae23886fef7823
sha512: cb99adbb99f18b06748108ec37b6cc3fb5e74d57960b29c6291684e3e75268792b2cd5c7f6fad9e5b9d2500f02b47d5f227af4c6b2b2eade7344affa73c150f9
ssdeep: 384:EgzoSa44luUciNYEf8eEaeFCySWsc+bD3WypriNY2luUKzoSa4:EgkluUXcJSWscAJpeTuUKk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EE533912B00CF214E66982F21863C5F811767E7BA9503A9B6ECFBF4A5CB76D32590707
sha3_384: df2a580e3736e1c23acd9047132e876ea5256de862cae4a323247b52691a9db833300dcd15f48a72fb22965c72b8008c
ep_bytes: 682c5f4000e8eeffffff000000000000
timestamp: 2014-01-17 01:26:51

Version Info:

Translation: 0x0804 0x04b0
Comments: GameToos Hide Run Play.bat
CompanyName: Duck
FileDescription: GameToos Hide Run Play.bat
LegalCopyright: Duck
LegalTrademarks: Duck
ProductName: GameToos Hide Run Play.bat
FileVersion: 1.00.0005
ProductVersion: 1.00.0005
InternalName: Play
OriginalFilename: Play.exe

Malware.AI.1549441924 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Bulz.881971
ClamAVWin.Malware.Generic-7603104-0
FireEyeGeneric.mg.af456f66eaee586b
ALYacGen:Variant.Bulz.881971
MalwarebytesMalware.AI.1549441924
ZillyaAdware.OutBrowse.Win32.86733
VirITTrojan.Win32.VBCrypt.JQ
CyrenW32/S-7d108e31!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Bulz.881971
NANO-AntivirusTrojan.Win32.VB.dxuqrs
AvastWin32:TrojanX-gen [Trj]
TencentMalware.Win32.Gencirc.10b231e9
EmsisoftGen:Variant.Bulz.881971 (B)
F-SecureHeuristic.HEUR/AGEN.1336388
DrWebTrojan.VbCrypt.250
VIPREGen:Variant.Bulz.881971
McAfee-GW-EditionGenericR-CXD!AF456F66EAEE
SophosML/PE-A
GDataGen:Variant.Bulz.881971
AviraHEUR/AGEN.1336388
Antiy-AVLWorm/Win32.WBNA
Kingsoftmalware.kb.a.873
ArcabitTrojan.Bulz.DD7533
MicrosoftProgram:Win32/Wacapew.C!ml
GoogleDetected
McAfeeGenericR-CXD!AF456F66EAEE
MAXmalware (ai score=80)
VBA32Trojan.VBKrypt
YandexTrojan.VbCrypt!dZvcC6+ie5Q
SentinelOneStatic AI – Suspicious PE
FortinetW32/Generic.AC.B0CB!tr
BitDefenderThetaAI:Packer.E97A969220
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.1549441924?

Malware.AI.1549441924 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment