Malware

Malware.AI.1681354608 removal tips

Malware Removal

The Malware.AI.1681354608 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1681354608 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1681354608?


File Info:

name: 5D94D5104021FB78BE9A.mlw
path: /opt/CAPEv2/storage/binaries/a908d13c4662f89eceefbc1536e0b4af9a6b5bb9b42ef32dc8b4afe8db386fae
crc32: 45849BA2
md5: 5d94d5104021fb78be9a690a17e3eaea
sha1: 4c5606e09e74cc6ae579db0afc58ad154e2007d4
sha256: a908d13c4662f89eceefbc1536e0b4af9a6b5bb9b42ef32dc8b4afe8db386fae
sha512: 16fcb2a9f55f03cf3dc5156e4b86c5f7d517e19c31540b7a1d543fd4d462b1a8de070f5fbda8218c70e01c7214cc736d05e5def2ee0ea215d702784154bf03f4
ssdeep: 6144:/0B3MXSCmiD8ccCnggKsHL2PgvZadw98gWNlPTGQQm6agrdKX/NE:O8XSC14ccCggXHLcuZadjNtTirdK/O
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11C74231E7F6041CFE9B883B245CA8DA5C4E7BD20567A5F47210079BBACF72743C44A29
sha3_384: 2e22e7e9fc229c6c3dac9a48db900e5b5c25cc550f2b42d6e7d924d362664ede10e1ccccfd8f8daaa5fdf2e992be549f
ep_bytes: 6801304a00e801000000c3c32f7d811d
timestamp: 2005-05-13 08:46:12

Version Info:

CompanyName:
FileDescription: GI_JC Microsoft 基础类应用程序
FileVersion: 1, 0, 0, 1
InternalName: GI_JC
LegalCopyright: 版权所有 (C) 1999
LegalTrademarks:
OriginalFilename: GI_JC.EXE
ProductName: GI_JC 应用程序
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Malware.AI.1681354608 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Graftor.318970
SkyhighBehavesLike.Win32.Generic.fc
McAfeeArtemis!5D94D5104021
Cylanceunsafe
SangforTrojan.Win32.Agent.V2dt
CrowdStrikewin/malicious_confidence_60% (D)
ArcabitTrojan.Graftor.D4DDFA
CynetMalicious (score: 100)
APEXMalicious
BitDefenderGen:Variant.Graftor.318970
VIPREGen:Variant.Graftor.318970
EmsisoftGen:Variant.Graftor.318970 (B)
VaristW32/ABRisk.ICDM-3735
Antiy-AVLTrojan/Win32.PossibleThreat
Kingsoftmalware.kb.a.944
GDataGen:Variant.Graftor.318970
GoogleDetected
ALYacGen:Variant.Graftor.318970
VBA32BScope.Trojan.Fuerboos
MalwarebytesMalware.AI.1681354608
TrendMicro-HouseCallTROJ_GEN.R002H09JP23
MaxSecureTrojan.Malware.218663034.susgen
FortinetW32/PossibleThreat
Cybereasonmalicious.09e74c
DeepInstinctMALICIOUS

How to remove Malware.AI.1681354608?

Malware.AI.1681354608 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment