Malware

Malware.AI.1696108177 removal guide

Malware Removal

The Malware.AI.1696108177 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1696108177 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Malware.AI.1696108177?


File Info:

name: 7C8E59EC636BF374F777.mlw
path: /opt/CAPEv2/storage/binaries/771516207339d110bd9be87d56002eac204df4f54e49fcde54cb4e1b58be5aee
crc32: 7934BF90
md5: 7c8e59ec636bf374f77778ef7848a976
sha1: 808c1d13fb7852b5578c784ed2a100764b79d74d
sha256: 771516207339d110bd9be87d56002eac204df4f54e49fcde54cb4e1b58be5aee
sha512: 58d136435494fa2b139c9a6b58ff36cdbd761b1192ee450220818366679d89d91249626f1ad21d593ff2ee42bfcdb935328abebbfc1b5642577e338d294c3b9f
ssdeep: 384:ulMfxiSSL7bS/5fQMLDLTLSLsFt7foY2LHZ4qAl:uWf87b03HOsFt7IHCq
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T11B43B9F09FF5B8A5E1142073B864B13C37D79D0EDC659836E69BF14A34629C220E6E1B
sha3_384: e908eed64a2b7317fc4f9fb6368ddb731f6a79d6b37782efdc87dd0d9d8045879d1da070119599f2c445cff5a5622f5e
ep_bytes: 4d5a90000300000004000000ffff0000
timestamp: 2097-03-05 07:12:17

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName: GitHub, Inc.
FileDescription:
FileVersion: 2.9.3.0
InternalName: packageinstall.exe
LegalCopyright: Copyright © 2017 GitHub, Inc.
LegalTrademarks:
OriginalFilename: packageinstall.exe
ProductName: GitHub Desktop
ProductVersion: 2.9.3.0
Assembly Version: 2.9.3.0

Malware.AI.1696108177 also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader44.11543
MicroWorld-eScanTrojan.GenericKD.38203244
FireEyeGeneric.mg.7c8e59ec636bf374
McAfeeArtemis!7C8E59EC636B
CylanceUnsafe
ZillyaDownloader.Agent.Win32.456714
K7AntiVirusTrojan-Downloader ( 0058b7b91 )
AlibabaBackdoor:MSIL/NanoBot.95bdbc89
K7GWTrojan-Downloader ( 0058b7b91 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.JSL
TrendMicro-HouseCallTROJ_GEN.R002C0WL921
Paloaltogeneric.ml
KasperskyHEUR:Backdoor.MSIL.NanoBot.gen
BitDefenderTrojan.GenericKD.38203244
AvastWin64:MalwareX-gen [Trj]
TencentMsil.Trojan-downloader.Agent.Akfu
Ad-AwareTrojan.GenericKD.38203244
EmsisoftTrojan.GenericKD.38203244 (B)
TrendMicroTROJ_GEN.R002C0WL921
McAfee-GW-EditionArtemis!Trojan
SentinelOneStatic AI – Suspicious PE
SophosMal/Generic-S
IkarusMalware.Win32.Injector
GDataTrojan.GenericKD.38203244
AviraHEUR/AGEN.1144921
GridinsoftRansom.Win64.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
VBA32Trojan.Sabsik.FL
ALYacTrojan.GenericKD.38203244
MalwarebytesMalware.AI.1696108177
APEXMalicious
MAXmalware (ai score=85)
FortinetMSIL/Agent.JSB!tr.dldr
AVGWin64:MalwareX-gen [Trj]
PandaTrj/CI.A

How to remove Malware.AI.1696108177?

Malware.AI.1696108177 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment