Malware

Malware.AI.1807344934 removal tips

Malware Removal

The Malware.AI.1807344934 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1807344934 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Malware.AI.1807344934?


File Info:

name: F0D99A5CE08ED0A76748.mlw
path: /opt/CAPEv2/storage/binaries/5c404afaaa222c0781bd67a498fa9646b668f6c5bf88f48b2ac6b558dab25227
crc32: F276A521
md5: f0d99a5ce08ed0a76748723234550740
sha1: 9016aedb9e00cbc26f3c927f3ea1085bfcfb3acb
sha256: 5c404afaaa222c0781bd67a498fa9646b668f6c5bf88f48b2ac6b558dab25227
sha512: 355623d0458cc9f4b7570dc5715a363543eaef39c50c94727e4298638d6881acebbce7a4657aed439c81d5feaa5279dba21a1044872be05c5377ade933681b01
ssdeep: 12288:5kJSl+Djjjjjjjja9olBM+tM1rtLQTPK27SZhW2mK:wjjjjjjjjaKlBM+t8rtEV7SZhWvK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11C351813EBC0C801E051D17493ADBA2C2F725D7D1AE25326AF8D7969BA7312DFA0B41D
sha3_384: 46e058720f9c70c5b033b2279b3f1abc2da36c8c5653dd3a9e70e54e74fc46622167159765d07a341a5675603634277a
ep_bytes: e88900000050e8b50100004765744e65
timestamp: 1972-12-25 05:33:23

Version Info:

FileVersion: 2.0.0.0
FileDescription: 闪游网游加速器
ProductName: 闪游网游加速器
ProductVersion: 2.0.0.0
CompanyName: 闪游网游加速器
LegalCopyright: 闪游网游加速器 www.syjsq.com
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Malware.AI.1807344934 also known as:

BkavW32.Common.5E9B545E
LionicTrojan.Win32.FlyStudio.4!c
MicroWorld-eScanTrojan.GenericKD.69112702
SkyhighBehavesLike.Win32.RealProtect.tm
McAfeeArtemis!F0D99A5CE08E
Cylanceunsafe
SangforTrojan.Win32.FlyStudio.V9si
K7AntiVirusTrojan ( 005690671 )
K7GWTrojan ( 005690671 )
CrowdStrikewin/grayware_confidence_70% (W)
ArcabitTrojan.Generic.D41E937E
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AE potentially unwanted
BitDefenderTrojan.GenericKD.69112702
NANO-AntivirusTrojan.Win32.Drop.dlhwif
AvastWin32:Malware-gen
SophosMal/Generic-S
DrWebTrojan.Siggen15.41633
VIPRETrojan.GenericKD.69112702
EmsisoftTrojan.GenericKD.69112702 (B)
IkarusPUA.PUPStudio
WebrootW32.Trojan.Gen
VaristW32/ABApplication.SDBV-4502
Antiy-AVLTrojan/Win32.Wacatac.b
XcitiumTrojWare.Win32.FlyStudio.~UJ@1sa9s6
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataWin32.Trojan.PSE.10ZFIE5
GoogleDetected
ALYacTrojan.GenericKD.69112702
VBA32Backdoor.BlackHole
MalwarebytesMalware.AI.1807344934
SentinelOneStatic AI – Suspicious PE
MaxSecureDropper.Dinwod.frindll
FortinetW32/FlyStudio.C!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.1807344934?

Malware.AI.1807344934 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment