Malware

What is “Malware.AI.1974044957”?

Malware Removal

The Malware.AI.1974044957 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1974044957 virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine Malware.AI.1974044957?


File Info:

name: F9EEB7812945BA94A043.mlw
path: /opt/CAPEv2/storage/binaries/fa6158183fcf36e5f1ab81e22e613b9338aa50b121712a75a94f0ca3f349c46b
crc32: D4A830E9
md5: f9eeb7812945ba94a043c8662967424e
sha1: 7c91a3acdbaeb339adc753f8e68d89f4d39cb899
sha256: fa6158183fcf36e5f1ab81e22e613b9338aa50b121712a75a94f0ca3f349c46b
sha512: bb1123017445dc1e0b874b3b111738efd4b58c1bda97264d51af4238e5bf6e55a44f26f103c01d3b3706d8608bd89fa58048d31806f27f82a4ce51f069b85fcd
ssdeep: 24576:azpdKZccvlHh6A7qyVq/tNH/je9VzA2IM7kgfgcNOenIcf+SqB8O2U8tZpE1a8oT:lCIUlNLm7k2ZQT0mR2HtZpdH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CDB593183089DA9E99E07820126D21331658645F1B749AFBAFEB749D1FDCCC42CF726E
sha3_384: e7aa734a8d1ee31e9876a1526615b74d16256c1d5777cdf5656a4fe53c7a13c2bd1641ff09e680868c73bae23b0dbae5
ep_bytes: e8d7040000e94efeffffc70114386500
timestamp: 2015-12-16 02:58:27

Version Info:

0: [No Data]

Malware.AI.1974044957 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Graftor.263656
FireEyeGeneric.mg.f9eeb7812945ba94
CAT-QuickHealTrojanSpy.Nivdort.DR3
ALYacGen:Variant.Graftor.263656
Cylanceunsafe
VIPREGen:Variant.Graftor.263656
K7AntiVirusTrojan ( 004da8bd1 )
BitDefenderGen:Variant.Graftor.263656
K7GWTrojan ( 004d977f1 )
Cybereasonmalicious.12945b
BaiduWin32.Trojan.Generic.ay
VirITTrojan.Win32.Generic.HMB
CyrenW32/S-ea466c64!Eldorado
SymantecTrojan.Gen.2
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Bayrob.AK
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojanSpy:Win32/Nivdort.5ba198ce
NANO-AntivirusTrojan.Win32.Nivdort.dzjfbi
TencentWin32.Trojan.Generic.Xfow
EmsisoftGen:Variant.Graftor.263656 (B)
F-SecureHeuristic.HEUR/AGEN.1317586
TrendMicroTROJ_BAYROB.SM3
McAfee-GW-EditionBehavesLike.Win32.PinkSbot.vh
Trapminemalicious.moderate.ml.score
SophosMal/Bayrob-C
IkarusTrojan.Win32.Bayrob
GDataGen:Variant.Graftor.263656
JiangminTrojan.Agent.ldy
AviraHEUR/AGEN.1317586
XcitiumMalware@#6vmhs0x9x3nw
ArcabitTrojan.Graftor.D405E8
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojanSpy:Win32/Nivdort.DF
GoogleDetected
AhnLab-V3Trojan/Win32.Blocker.C1313889
McAfeeTrojan-FHOH!F9EEB7812945
MAXmalware (ai score=87)
MalwarebytesMalware.AI.1974044957
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_BAYROB.SM3
RisingTrojan.Generic@AI.96 (RDMK:RNbqctqZ7nZpUEwnctUp7w)
YandexTrojan.Agent!xZ10pIgpdbI
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Bayrob.AK!tr
BitDefenderThetaAI:Packer.BD8297E71D
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.1974044957?

Malware.AI.1974044957 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment