Malware

Malware.AI.4157384963 information

Malware Removal

The Malware.AI.4157384963 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4157384963 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4157384963?


File Info:

name: EBAA5C84CEEEB1B2F9E5.mlw
path: /opt/CAPEv2/storage/binaries/fb0d14c63f008648173c6551fafcd637a1680258c0f9f55fc630a539e5dbd355
crc32: A06F587F
md5: ebaa5c84ceeeb1b2f9e5f78bd016fc1a
sha1: 4d2c56c12160be7a8cc927159b8674d8e8b68774
sha256: fb0d14c63f008648173c6551fafcd637a1680258c0f9f55fc630a539e5dbd355
sha512: bb09c1496540ab94360bedcc881e4053d2f87750a2024585e21ae65af50a80a5b1bca55ed3d4613a961bb27e125abf59e90c67d85c0335567715a88a4238a947
ssdeep: 6144:O1IhOZnvERMU6ZCIaer+UsOmVCQofgjvW8cOkc0G:EGnmCC+ZjVdvlc
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1CD5422D572EBB866E58C50FB63A93701E7CDC00503ED5BC22CDE66B26D2C3A4548F02A
sha3_384: 4397d0bb7e889198bf68b9193919942a6e36981b5b51da4df4a137b9eeb003c03972c40e6f3ea17813c2fed94ae54f0e
ep_bytes: 60be001047008dbe0000f9ffc787144d
timestamp: 2018-08-30 21:43:28

Version Info:

0: [No Data]

Malware.AI.4157384963 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Convagent.b!c
FireEyeGeneric.mg.ebaa5c84ceeeb1b2
SkyhighBehavesLike.Win32.Dropper.dc
MalwarebytesMalware.AI.4157384963
ZillyaDropper.Convagent.Win32.5363
Cybereasonmalicious.12160b
Elasticmalicious (moderate confidence)
APEXMalicious
KasperskyVHO:Trojan-Dropper.Win32.Convagent.gen
Trapminesuspicious.low.ml.score
WebrootW32.Trojan.Gen
Antiy-AVLTrojan[Dropper]/Win32.Convagent
ZoneAlarmVHO:Trojan-Dropper.Win32.Convagent.gen
McAfeeArtemis!EBAA5C84CEEE
PandaTrj/Chgt.AD
RisingDropper.Convagent!8.123ED (CLOUD)
MaxSecureTrojan.Malware.109757858.susgen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4157384963?

Malware.AI.4157384963 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment