Malware

Malware.AI.1960811879 removal

Malware Removal

The Malware.AI.1960811879 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1960811879 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.1960811879?


File Info:

name: 5B243826EC1609518965.mlw
path: /opt/CAPEv2/storage/binaries/a4d77788467f666dde67fe63289f6526c758342ec3d9a42746fdb9207572d727
crc32: 03CF7558
md5: 5b243826ec1609518965297fde8a11c7
sha1: 0b6f372b0928f5910878d85eadec9652c9386120
sha256: a4d77788467f666dde67fe63289f6526c758342ec3d9a42746fdb9207572d727
sha512: 4b3b226aef9e11222b7ac43c4255520e2d869d7c40459c02c0e9e6c514f1956fa7d0d49b8da8fde4fca0815d5f1da01a46343a7b8a0a9ab4bd8cefc2c1bc1d94
ssdeep: 3072:5FJ8f3L8Z/M+I9J29FpLSvqUfJRXyZ2VaHOoCrCjC9ZzoSsg:5b8f78ZdReqiXDsOoCiuoSsg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D8E302491613DC56D16E873B4607DAB9702C7678A4DD2E4323C9008EECBCB9B1B77B81
sha3_384: 736efcc05267cd6a5b672cf067dfa2173d5b1d8370c6cd57de804de2753e40613dcb807e800d0a14c8c1934a544f397c
ep_bytes: 60be00f056008dbe0020e9ff57eb0b90
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.1960811879 also known as:

Elasticmalicious (moderate confidence)
DrWebTrojan.DownLoad2.35354
MicroWorld-eScanGen:Trojan.Heur.DP.imGfaiM47yni
FireEyeGeneric.mg.5b243826ec160951
McAfeeGenericRXAA-AA!5B243826EC16
CylanceUnsafe
VIPREGen:Trojan.Heur.DP.imGfaiM47yni
CrowdStrikewin/grayware_confidence_60% (W)
ArcabitTrojan.Heur.DP.imGfaiM47yni
BitDefenderThetaAI:Packer.2340A0031F
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/KeyLogger.EliteKeylogger.46
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Trojan.Heur.DP.imGfaiM47yni
NANO-AntivirusTrojan.Win32.144384.duqrs
AvastWin32:PUP-gen [PUP]
Ad-AwareGen:Trojan.Heur.DP.imGfaiM47yni
EmsisoftGen:Trojan.Heur.DP.imGfaiM47yni (B)
ComodoMalware@#v50e7m35kcqc
ZillyaTrojan.Keylogger.Win32.62225
McAfee-GW-EditionBehavesLike.Win32.Dropper.cc
Trapminemalicious.high.ml.score
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Delf.wfv
GoogleDetected
Antiy-AVLTrojan/Generic.ASMalwS.F7
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Trojan.Heur.DP.imGfaiM47yni
CynetMalicious (score: 100)
VBA32TScope.Trojan.Delf
ALYacGen:Trojan.Heur.DP.imGfaiM47yni
MAXmalware (ai score=87)
MalwarebytesMalware.AI.1960811879
YandexTrojan.KeyLogger!VLC4Kbk9S8c
IkarusTrojan-Downloader.Win32.Delf
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/EliteKeylogger.46
AVGWin32:PUP-gen [PUP]
Cybereasonmalicious.6ec160

How to remove Malware.AI.1960811879?

Malware.AI.1960811879 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment