Malware

About “Malware.AI.1986315379” infection

Malware Removal

The Malware.AI.1986315379 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1986315379 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.1986315379?


File Info:

name: 1FD9586D618A7DCE777B.mlw
path: /opt/CAPEv2/storage/binaries/f23854902608a2b7e06a60288e41c299b6ad0428248d51d49e00fb31be6c43ce
crc32: B2876358
md5: 1fd9586d618a7dce777bd3a3f3fb2212
sha1: dc1a4206e4094154db1988550d064ba19f811542
sha256: f23854902608a2b7e06a60288e41c299b6ad0428248d51d49e00fb31be6c43ce
sha512: c62c32642b77f35cb11240f9a3647812ec1ba0d77e3e6179b44b8997875cd64945269292836d1fa8ead657c794b2b3fd38065662982376918b581ba5c3333176
ssdeep: 6144:y0Okmqm9Eztl/K8zT2tJML+A8pNRavPYjhD4KmwiF5lrE6TPqP/CWnsPWg0:y0OIAaycT2tuapfcAhD4UGrE6zqPacgU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19C842399EAC50823E2156EF0F27F504E37B7E564AF483BA6F416E9417C093C609790EE
sha3_384: 31fb27c0f9250fc1bebac9b2b99605d910d69295ea18bcad2c0337adca9c9bcc423b0217809939fe84236365a3c9b1fa
ep_bytes: 81c4fcffffff8d6d0089042468559187
timestamp: 1984-07-28 17:54:10

Version Info:

0: [No Data]

Malware.AI.1986315379 also known as:

BkavW32.Common.65C0E3E3
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Vundo.EDI
FireEyeGeneric.mg.1fd9586d618a7dce
Skyhighgeneric!bg.k
McAfeegeneric!bg.k
MalwarebytesMalware.AI.1986315379
VIPRETrojan.Vundo.EDI
SangforTrojan.Win32.Vundo.Vn5t
AlibabaTrojan:Win32/Monder.efa274c7
VirITTrojan.Win32.Virtumod.based.N
SymantecTrojan.Vundo.B
ESET-NOD32Win32/Adware.Virtumonde
APEXMalicious
TrendMicro-HouseCallTROJ_VUNDO.CPF
Paloaltogeneric.ml
ClamAVWin.Trojan.Zlob-4335
KasperskyTrojan.Win32.Monder.gen
BitDefenderTrojan.Vundo.EDI
NANO-AntivirusTrojan.Win32.Monder.wszvc
AvastWin32:Monder-AD [Trj]
EmsisoftTrojan.Vundo.EDI (B)
F-SecureTrojan.TR/Zlob.izs
DrWebTrojan.Virtumod.based
ZillyaTrojan.Monder.Win32.4010
TrendMicroTROJ_VUNDO.CPF
Trapminemalicious.high.ml.score
SophosTroj/Virtum-Gen
SentinelOneStatic AI – Suspicious PE
MAXmalware (ai score=100)
JiangminTrojan/Monder.Gen.a
WebrootW32.Vundo.Gen
GoogleDetected
AviraTR/Zlob.izs
VaristW32/Downloader.KIQS-3130
Antiy-AVLTrojan/Win32.Monder
KingsoftWin32.Trojan.Monder.gen
MicrosoftTrojan:Win32/Vundo.gen!D
XcitiumApplication.Win32.Adware.Virtumonde@b738
ArcabitTrojan.Vundo.EDI
ViRobotTrojan.Win32.Monder.391440
ZoneAlarmTrojan.Win32.Monder.gen
GDataTrojan.Vundo.EDI
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Monder.C59527
BitDefenderThetaGen:NN.ZexaF.36804.xqX@aerVbPb
ALYacTrojan.Vundo.EDI
TACHYONTrojan-Clicker/W32.Virtumonde.391448
VBA32BScope.Trojan.Monder
Cylanceunsafe
PandaSpyware/Virtumonde
RisingTrojan.Monder!8.19C4 (TFE:4:n2hkjWAShML)
YandexTrojan.GenAsa!QnwcoIrEoS4
IkarusPUA.Virtumonde
MaxSecureTrojan.Malware.300983.susgen
FortinetMalware_fam.gw
AVGWin32:Monder-AD [Trj]
DeepInstinctMALICIOUS

How to remove Malware.AI.1986315379?

Malware.AI.1986315379 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment