Malware

About “Malware.AI.1641156099” infection

Malware Removal

The Malware.AI.1641156099 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1641156099 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.1641156099?


File Info:

name: 4B01F0D2DE0B557CD13E.mlw
path: /opt/CAPEv2/storage/binaries/bf8f74a05e4a10ab893c73bc95ed16c3b5c6ffe6e257c098b33c04c3a893acb9
crc32: 268F59A3
md5: 4b01f0d2de0b557cd13e42a36b78894f
sha1: b8a0d70e602684067b2dc5565a5f6a786fb298fa
sha256: bf8f74a05e4a10ab893c73bc95ed16c3b5c6ffe6e257c098b33c04c3a893acb9
sha512: 8ae8b40087975adb2117ea4e4c94065551500dfe7229c55f6796507236bba692f86f03a1974aeea1577896b4386fdf05286541d175b2b28eb403341583108964
ssdeep: 24576:F+KpP3IzkQ3e6+BU2JpFKRbUb1QFlX4LxJ6/TwvcfqmoUtKxXq7qHtP/0LdnJRyN:1eawuSBU1K+FmDI6MtP/0Ldnu1Qoz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D795C002FB8284B2E5971639A07AA37F8E3AAE105734D6E3C7D11D658D312D1663F3E1
sha3_384: 492b3bcae35927e7ea07a80239744916603d87a3c0b2c0d81e8bb1f6d8e368131c35385b185358db072b090f1bacead7
ep_bytes: e8d70a0000e98efeffffcc518d4c2404
timestamp: 2022-06-30 11:00:43

Version Info:

0: [No Data]

Malware.AI.1641156099 also known as:

LionicTrojan.Win32.Generic.4!c
AVGWin32:Malware-gen
MicroWorld-eScanTrojan.GenericKD.39907759
FireEyeTrojan.GenericKD.39907759
CAT-QuickHealTrojan.Win32CiR
ALYacTrojan.GenericKD.39907759
CylanceUnsafe
SangforTrojan.Win32.Agent.Vh97
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
CyrenW32/ABRisk.UKXM-6559
SymantecTrojan Horse
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
APEXMalicious
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.39907759
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.39907759
EmsisoftTrojan.GenericKD.39907759 (B)
F-SecureTrojan.TR/Redcap.vhbda
VIPRETrojan.GenericKD.39907759
TrendMicroRansom_Redeemer.R002C0DGN22
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
GDataTrojan.GenericKD.39907759
WebrootW32.Trojan.GenKD
AviraTR/Redcap.vhbda
MAXmalware (ai score=85)
Antiy-AVLTrojan[Ransom]/Win32.Redeemer
ArcabitTrojan.Generic.D260F1AF
MicrosoftRansom:Win32/Redeemer!MSR
GoogleDetected
McAfeeArtemis!4B01F0D2DE0B
MalwarebytesMalware.AI.1641156099
TrendMicro-HouseCallRansom_Redeemer.R002C0DGN22
RisingTrojan.Generic@AI.82 (RDML:l2AZtbJAhad1NwYxnEfC3Q)
IkarusTrojan-Ransom.Redeemer
MaxSecureTrojan.Malware.186544844.susgen
FortinetW32/PossibleThreat
BitDefenderThetaGen:NN.ZexaF.34606.YDW@aiuDJdki
PandaTrj/Chgt.AD

How to remove Malware.AI.1641156099?

Malware.AI.1641156099 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment