Malware

What is “Malware.AI.1688822056”?

Malware Removal

The Malware.AI.1688822056 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1688822056 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.1688822056?


File Info:

name: C144BB291725C63C8F02.mlw
path: /opt/CAPEv2/storage/binaries/baabfd78ff094ff0c3885c993cea24415d329db346dac0660b659b45736b1a24
crc32: E6B117BD
md5: c144bb291725c63c8f029a03bd70b622
sha1: 6b2148700a84fa977f0a0d50c42a6c41d535a7e4
sha256: baabfd78ff094ff0c3885c993cea24415d329db346dac0660b659b45736b1a24
sha512: b26248770e4172ca26d0ce6f040e4134dafc3f865b102a80bcb9710919e6afbd9bbbd6366ab50f61cfff86ac9c4226f3ba576c1f427390ae62a630b86183e3d1
ssdeep: 24576:m9VQe0jFAFZmCDlEZCYdSIff43Dyyfkgk9A8VHv8MSJ2N7vNLW+p5OD4EeAo2N6x:qdMWtSSIff43Dyyfkgk9A8VHv8MSJ2Nr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EF655B417640EBA2DAEE7736E38605150FB653935B32E308B68F67A00D731679C0BB5B
sha3_384: a3a9626d587af9b13943e3dbe96fd8e55b84fdd979f64c1518601f21cf67ee69a120be4beb727c5494ce115f915a7e7d
ep_bytes: ff250020400000000000000000000000
timestamp: 2016-06-13 11:05:09

Version Info:

Translation: 0x0000 0x04b0
Comments: Json.NET is a popular high-performance JSON framework for .NET
CompanyName: Newtonsoft
FileDescription: Json.NET
FileVersion: 9.0.1.19813
InternalName: Newtonsoft.Json.dll
LegalCopyright: Copyright © James Newton-King 2008
LegalTrademarks:
OriginalFilename: Newtonsoft.Json.dll
ProductName: Json.NET
ProductVersion: 9.0.1.19813
Assembly Version: 9.0.0.0

Malware.AI.1688822056 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.39559766
FireEyeGeneric.mg.c144bb291725c63c
McAfeeArtemis!C144BB291725
CylanceUnsafe
SangforRiskware.Win32.Agent.ky
K7AntiVirusTrojan ( 0058cf291 )
AlibabaTrojan:MSIL/Injects.01964eda
K7GWTrojan ( 0058cf291 )
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW32/MSIL_Agent.CZY.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/GenKryptik.FPSD
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.MSIL.Injects.gen
BitDefenderTrojan.GenericKD.39559766
AvastWin32:Trojan-gen
Ad-AwareTrojan.GenericKD.39559766
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.39559766 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Trojan-Stealer.FormBook.ED1O0O
CynetMalicious (score: 100)
MAXmalware (ai score=85)
VBA32Malware-Cryptor.MSIL.AgentTesla.Heur
MalwarebytesMalware.AI.1688822056
FortinetMSIL/Kryptik.AEXA!tr
AVGWin32:Trojan-gen

How to remove Malware.AI.1688822056?

Malware.AI.1688822056 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment