Malware

Should I remove “Malware.AI.4157319331”?

Malware Removal

The Malware.AI.4157319331 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4157319331 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Chinese (Traditional)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempted to write directly to a physical drive
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4157319331?


File Info:

name: 92C468BAA9C0339F3B2A.mlw
path: /opt/CAPEv2/storage/binaries/24ff57d80fb3879e42564c5d72707926255ec5c2667f5fe73454b0787d19a8ad
crc32: 747857A5
md5: 92c468baa9c0339f3b2af37880ea8f43
sha1: c724695047b4bd464d83c81713087576ad64cdea
sha256: 24ff57d80fb3879e42564c5d72707926255ec5c2667f5fe73454b0787d19a8ad
sha512: 5388a5fdcd21ecc18f04e085a855e35a46c582394e4b0951a56040e3f96ffd474082d0489b3c9c468d1e25b472b844e123f3f3c345dae0950080ac56b62551ef
ssdeep: 1536:LlfbjJl2ldaRo6B0lB3tCxiqFSZIdpi1Xxj336pnyRVPlongFb+TwgY99toPwb9l:R/2DQx7SZekBnyutB+TNpPwqYOsD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T187E38F3EA9FC0533D2B8EAF59FC2C963B410E1AB7526197294C693A54B53D4234C227E
sha3_384: e82ca32f137c06d46296677f0b9b9230fb760ed8549ebcd1ca32aa3d8c1e3d5bc30b57ecd62962f1d6fa06e05cb9e1d2
ep_bytes: 68d4114000e8f0ffffff000000000000
timestamp: 2010-03-30 00:25:11

Version Info:

Comments:
:
: r%FileDescription
: r%FileDescription
Description:
FileVersion:
InternalName:
LegalCopyright:
LegalTrademarks:
:
:
Translation: 0x0409 0x04b0

Malware.AI.4157319331 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.VB.4!c
MicroWorld-eScanGen:Heur.VB.Krypt.10
FireEyeGeneric.mg.92c468baa9c0339f
SkyhighBehavesLike.Win32.Upatre.ch
McAfeeGenericR-DFT!92C468BAA9C0
MalwarebytesMalware.AI.4157319331
ZillyaTrojan.VB.Win32.33788
SangforSuspicious.Win32.Save.vb
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGen:Heur.VB.Krypt.10
K7GWNetWorm ( 700000151 )
K7AntiVirusNetWorm ( 700000151 )
VirITTrojan.Win32.Scar.GC
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/VB.PDQ
APEXMalicious
ClamAVWin.Dropper.Bifrost-9987848-0
KasperskyTrojan.Win32.VB.adug
AlibabaTrojan:Win32/VBInject.3819aa80
NANO-AntivirusTrojan.Win32.VB.jpxhd
ViRobotTrojan.Win32.A.VB.212992.F
RisingDropper.Generic!8.35E (CLOUD)
SophosMal/VBCheMan-A
F-SecureTrojan.TR/Dropper.Gen
DrWebBackDoor.IRC.Sdbot.11477
VIPREGen:Heur.VB.Krypt.10
TrendMicroTROJ_VB.JQU
Trapminemalicious.high.ml.score
EmsisoftGen:Heur.VB.Krypt.10 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Heur.VB.Krypt.10
JiangminTrojan.VB.awhf
WebrootTrojan:Win32/Ircbrute
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/VBTrojan.Dropper.4!Maximus
Antiy-AVLTrojan/Win32.VB
KingsoftWin32.Trojan.VB.adug
XcitiumMalware@#21u01zcx6lxe6
ArcabitTrojan.VB.Krypt.10
ZoneAlarmTrojan.Win32.VB.adug
MicrosoftVirTool:Win32/VBInject.gen!FA
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.VBNA.R3814
BitDefenderThetaAI:Packer.71F59B611F
ALYacGen:Heur.VB.Krypt.10
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
VBA32Trojan.VB
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallTROJ_VB.JQU
TencentWin32.Trojan.Vb.Gtgl
IkarusGen.Trojan.VB.Refpron
MaxSecureTrojan.Malware.2934558.susgen
FortinetW32/Injector.VOX!tr
AVGWin32:Dropper-gen [Drp]
AvastWin32:Dropper-gen [Drp]

How to remove Malware.AI.4157319331?

Malware.AI.4157319331 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment