Malware

Malware.AI.1693746437 (file analysis)

Malware Removal

The Malware.AI.1693746437 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1693746437 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.1693746437?


File Info:

name: B0F6260EFCE92271609C.mlw
path: /opt/CAPEv2/storage/binaries/a57d3f674a144caefaf51839fe38eeb209af012b451c9a5e11b068bf4d8b1d01
crc32: 72E5B09A
md5: b0f6260efce92271609cef95f7653121
sha1: e341ba83e82a347184ad9d27ea32ffaeb797f799
sha256: a57d3f674a144caefaf51839fe38eeb209af012b451c9a5e11b068bf4d8b1d01
sha512: f1e5daf5672016c1711424c7f4a4e2141c4d928dca5c9d584d997156a22c154b784d22635eddb5373344c5177a3ddd7ab50abe32021d422938faafa84c1c08ea
ssdeep: 3072:UEBxQlc5SYwI7NpnRcBwZs35WcOHKJouxXEovQOichyAMHG85seqQWgunIu//RaB:UEBxQkBnZsJVhyAh+pxWJJ/RaWoSY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10C44E4466883D115DC7D2634C443DAFC27A6FE321506AB7F0A28F93B7833A5A8D54E1E
sha3_384: b21e433918906d3af1b2f173190b039a63cca8671022ee45cb31e41174203888c903cbea60950f271e027972f00a9754
ep_bytes: 60be00d047008dbe0040f8ff5789f368
timestamp: 2014-07-19 07:46:00

Version Info:

FileDescription: IExplorer6.0 Microsoft 基础类应用程序
FileVersion: 1, 0, 6, 0
InternalName: IExplorer6.0
LegalCopyright: 版权所有 (C) 2013
OriginalFilename: IExplorer6.0.EXE
ProductName: IExplorer6.0 应用程序
ProductVersion: 1, 0, 6, 0
Translation: 0x0804 0x04b0

Malware.AI.1693746437 also known as:

BkavW32.AIDetectMalware
LionicHacktool.Win32.Krap.mgDs
MicroWorld-eScanTrojan.GenericKD.67877524
FireEyeGeneric.mg.b0f6260efce92271
McAfeePacked-FJ!B0F6260EFCE9
Cylanceunsafe
VIPRETrojan.GenericKD.67877524
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaPacked:Win32/Obfuscated.8aa673a6
K7GWTrojan ( 004dfa3a1 )
K7AntiVirusTrojan ( 004dfa3a1 )
CyrenW32/ABRisk.JPOF-2668
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Generik.CBFPUXR
APEXMalicious
CynetMalicious (score: 100)
KasperskyPacked.Win32.Krap.jd
BitDefenderTrojan.GenericKD.67877524
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.13ea1cc8
SophosMal/Generic-S
ZillyaTrojan.KillFilesGen.Win32.2
TrendMicroTROJ_GEN.R002C0PG223
McAfee-GW-EditionBehavesLike.Win32.RealProtect.dm
Trapminesuspicious.low.ml.score
EmsisoftTrojan.GenericKD.67877524 (B)
GDataTrojan.GenericKD.67877524
Antiy-AVLTrojan[Packed]/Win32.Krap.jd
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Generic.D40BBA94
ZoneAlarmPacked.Win32.Krap.jd
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
ALYacTrojan.GenericKD.67877524
MAXmalware (ai score=87)
MalwarebytesMalware.AI.1693746437
TrendMicro-HouseCallTROJ_GEN.R002C0PG223
RisingPUA.Krap!8.1325D (CLOUD)
SentinelOneStatic AI – Suspicious PE
MaxSecurePacked.Krap.JD
FortinetW32/ULPM.16C0!tr
BitDefenderThetaGen:NN.ZexaF.36348.qm0@aK0VaQnj
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.1693746437?

Malware.AI.1693746437 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment