Malware

What is “Malware.AI.1966392380”?

Malware Removal

The Malware.AI.1966392380 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1966392380 virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.1966392380?


File Info:

crc32: 07782A45
md5: a158121de4d9786bc423fbd44760bf5b
name: A158121DE4D9786BC423FBD44760BF5B.mlw
sha1: b6a1dc5bce796cdcc324ea215c56c72b88bd1ce9
sha256: 2101ad6add35e59d9571deca1987f617f2e6be9190b75214c662f0f53ee40e80
sha512: 99504a8d2575df9cf47992d8ae837ca2663be7dabec3bffd490cf41b75f80e395b27a37bd42be724b632d34326bbbff87e8ca157ab66ec0ecaddafb697effaeb
ssdeep: 6144:OfTu1+OL6Bn6liBBonXBgWMRjZXU9CwiuWLICb44Efm3rL:yuXL6QkSXiWMRFMCrxLZb0m3rL
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright DbDistinctExpression 2020
Assembly Version: 116.745.343.953
InternalName: ConnectionInterfaceCollection.exe
FileVersion: 152.622.906.609
CompanyName: DbDistinctExpression
LegalTrademarks: DbDistinctExpression - All rights reserved. 2020
Comments: CodeSubDirectory EdmError
ProductName: NodeLabelEditEventHandler RuntimeFieldHandle
ProductVersion: 152.622.906.609
FileDescription: PowerModeChangedEventHandler
OriginalFilename: ConnectionInterfaceCollection.exe

Malware.AI.1966392380 also known as:

CynetMalicious (score: 99)
ALYacGen:Variant.Bulz.513372
SangforInfostealer.MSIL.Reline.gen
AlibabaTrojanPSW:MSIL/Kryptik.57c4c4ea
K7GWTrojan ( 0057de441 )
CyrenW32/Trojan.QTQT-7272
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ABKQ
AvastWin32:DangerousSig [Trj]
KasperskyHEUR:Trojan-PSW.MSIL.Reline.gen
BitDefenderGen:Variant.Bulz.513372
MicroWorld-eScanGen:Variant.Bulz.513372
Ad-AwareGen:Variant.Bulz.513372
BitDefenderThetaGen:NN.ZemsilF.34738.Fm2@aG2107o
TrendMicroTROJ_GEN.R002C0WFG21
McAfee-GW-EditionArtemis!Trojan
FireEyeGen:Variant.Bulz.513372
EmsisoftGen:Variant.Bulz.513372 (B)
WebrootW32.Trojan.MSIL.Reline
AviraTR/Kryptik.pdlzl
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.3379F9C
MicrosoftTrojan:Script/Phonzy.B!ml
ArcabitTrojan.Bulz.D7D55C
AegisLabTrojan.MSIL.Reline.i!c
GDataGen:Variant.Bulz.513372
AhnLab-V3Trojan/Win.MSILKrypt.C4526518
McAfeeArtemis!A158121DE4D9
MAXmalware (ai score=82)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.1966392380
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0WFG21
IkarusTrojan.MSIL.Crypt
FortinetW32/Reline.ABKQ!tr.pws
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.1966392380?

Malware.AI.1966392380 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment