Malware

Malware.AI.2182421153 removal guide

Malware Removal

The Malware.AI.2182421153 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2182421153 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • Collects information about installed applications

How to determine Malware.AI.2182421153?


File Info:

crc32: A182B10D
md5: a92919b3408335ae5502356d83c7fa16
name: A92919B3408335AE5502356D83C7FA16.mlw
sha1: cfa87c2b7faf33c57973632904666b02e1a77e83
sha256: d51aaba80340e14897e206f1e444dde0b58b758630e863f172c7d788a4372c31
sha512: 1408656c614f89d932890223d0a56fca522210e4ea78cba6a399176bf2b3cbfb4963ed97fe41b7ff57499b6fed519aa17316831a549630cba415aab63382e1b3
ssdeep: 6144:AWAIsOLTEcDpn9IkQFqgrHojg6aH+LCpCefd9tjRwaJk:gIsOnNp1V8ojg3ICJ5VQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) Laplink Software, Inc. 2007
InternalName: Laplink ipdate Check
FileVersion: 17.500.01700.0
CompanyName: Laplink Software, Inc.
Comments: Laplink Gold Component
ProductName: Laplink Gold
ProductVersion: 14.01.0017.00
FileDescription: Laplink ipdate Check Application
OriginalFilename: LLipdateCheck.EXE
Translation: 0x0409 0x04b0

Malware.AI.2182421153 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005669021 )
LionicTrojan.Win32.Qshell.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Dridex.735
CynetMalicious (score: 100)
CAT-QuickHealTrojan.QshellPMF.S20771713
ALYacGen:Variant.Razy.869372
CylanceUnsafe
ZillyaTrojan.Dridex.Win32.1514
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaTrojan:Win32/Dridex.b8339e54
K7GWTrojan ( 005669021 )
CyrenW32/Dridex.EA.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Dridex.DD
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Qshell.pef
BitDefenderGen:Variant.Razy.869372
NANO-AntivirusTrojan.Win32.Qshell.ivkwws
MicroWorld-eScanGen:Variant.Razy.869372
TencentMalware.Win32.Gencirc.10ce5ee7
Ad-AwareGen:Variant.Razy.869372
SophosML/PE-A + Mal/EncPk-APV
BitDefenderThetaGen:NN.ZexaF.34050.l90@aCXVy1ci
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DEJ21
McAfee-GW-EditionBehavesLike.Win32.Trojan.tz
FireEyeGeneric.mg.a92919b3408335ae
EmsisoftGen:Variant.Razy.869372 (B)
SentinelOneStatic AI – Suspicious PE
JiangminPacked.PolyCrypt.xmt
AviraTR/AD.Dridex.rxdnu
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.32DC1B5
MicrosoftTrojan:Win32/ClipBanker.RT!MTB
ArcabitTrojan.Razy.DD43FC
GDataGen:Variant.Razy.869372
TACHYONTrojan/W32.Qshell.1231360
AhnLab-V3Trojan/Win.Dridex.R420955
McAfeeW32/PinkSbot-HN!A92919B34083
MAXmalware (ai score=83)
VBA32BScope.Backdoor.Dridex
MalwarebytesMalware.AI.2182421153
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DEJ21
RisingTrojan.Generic@ML.100 (RDML:mhv5juiMiRHqIqmoDUtOjw)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/EncPk.APV!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Dridex.HxQBWbsA

How to remove Malware.AI.2182421153?

Malware.AI.2182421153 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment