Malware

Malware.AI.1601524057 (file analysis)

Malware Removal

The Malware.AI.1601524057 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1601524057 virus can do?

  • Presents an Authenticode digital signature
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1601524057?


File Info:

name: 041FBFDD23E4E389D862.mlw
path: /opt/CAPEv2/storage/binaries/e4a5fb124797793b270c1c9bd96e46a6bd75c2682c3baa6a70306ddf65f658a6
crc32: F636F13E
md5: 041fbfdd23e4e389d862931542ebb192
sha1: bedb62040df08c9212f563d5973496ce2d3af8aa
sha256: e4a5fb124797793b270c1c9bd96e46a6bd75c2682c3baa6a70306ddf65f658a6
sha512: f08109e293346d49021d045f9c93370a66a3ea616e74679d2df8545091e1b8963084ad3a1c9e179168dfd4d160863e91d2f4766594cee3df1e4ed04255a09a4a
ssdeep: 24576:W8OS/HEp6uugXVav9MkVgcuzKPgssStPUvgB:NO0Ep6fv9M3hKPgssSt2gB
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13A95060EEFE44C69F1B36A719DB5936D5A76BD605A35C20F2280324ECDB1F809A35723
sha3_384: 279aa5da971aa90c8cb2d7757877dfa82348d5ffee9c8ffcd8150aa70636df4c839c8b1bcbce72bcbce98a80bf3d6e70
ep_bytes: e829040000e9a9fdffffcccccccccc8b
timestamp: 2016-01-29 01:25:53

Version Info:

Platform: NT
LegalTrademarks: Microsoft SQL Server is a registered trademark of Microsoft Corporation.
Comments: SQL
GoldenBits: False
CompanyName: Microsoft Corporation
FileDescription: SQL External minidumper
FileVersion: 2011.0110.9167.944 ((BI_Office_Stab).160128-1649)
InternalName: SqlDumper
LegalCopyright: Microsoft Corp. All rights reserved.
OriginalFilename: SqlDumper.exe
ProductName: Microsoft SQL Server
ProductVersion: 11.0.9167.944
Translation: 0x0409 0x04b0

Malware.AI.1601524057 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
McAfeeGenericRXRH-RQ!041FBFDD23E4
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
CyrenW32/Bladabindi.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R03BH0CAV22
ClamAVWin.Trojan.Blackie-9884258-0
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.th
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1141745
Antiy-AVLTrojan/Generic.ASBOL.C6BA
MicrosoftTrojan:Script/Phonzy.C!ml
GDataWin32.Trojan.PSE.136NMWS
CynetMalicious (score: 100)
MalwarebytesMalware.AI.1601524057
IkarusBackdoor.Win32.Bladabindi
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Bladabindi.F676!tr
Cybereasonmalicious.40df08

How to remove Malware.AI.1601524057?

Malware.AI.1601524057 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment