Malware

Malware.AI.4189191511 (file analysis)

Malware Removal

The Malware.AI.4189191511 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4189191511 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Malware.AI.4189191511?


File Info:

name: D339B0CD57D0A0BA6373.mlw
path: /opt/CAPEv2/storage/binaries/62d7a98797aac362c5a21db588f03723f330fa4e08f36094a89f531160edab5a
crc32: 3669198B
md5: d339b0cd57d0a0ba63732013a7334e8e
sha1: 66cfafdf845cc8b39d2d7227fa9138c119fb7ecd
sha256: 62d7a98797aac362c5a21db588f03723f330fa4e08f36094a89f531160edab5a
sha512: 0885efec84fc39f9d05e38e43f97b81457802de9ae77bec81d8be408563ce0665b97c812800dd83e07a0334714c993f791204040b6aa41a9b44d25ebf5bb756b
ssdeep: 1536:ARE47k0wyRhes132n9KHYhYTyZG05y4lPVtFnToIf1Kf3EVSDxayg:ARE4ObFnYYhvTxlPVttTBf1Kf3Edb
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T161938D72B6C145FBF9902A3800E7673E9F3631534956EA97E765FD221837220E6223C7
sha3_384: a13ef0fff774db28d5f82ceef8dce294f938ac099a16e97e180d575b96bb8c2cca8b4f1520bb7c13a1b77c8b1ba3e7b7
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2011-07-05 16:20:17

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Windows NT C++ Runtime Library DLL
FileVersion: 7.0.3790.3959 (srv03_sp2_rtm.070216-1710)
InternalName: msvcp.dll
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: msvcp.dll
ProductName: Microsoft® Windows® Operating System
ProductVersion: 7.0.3790.3959
Translation: 0x0409 0x04b0

Malware.AI.4189191511 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.lsF1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.GIFE
FireEyeGeneric.mg.d339b0cd57d0a0ba
CAT-QuickHealTrojan.SdumPMF.S31876356
SkyhighBehavesLike.Win32.Generic.nm
ALYacTrojan.Agent.GIFE
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
AlibabaTrojan:Win32/Winnti.8e15c618
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Agent.GIFE
SymantecBackdoor.Texupus
ESET-NOD32a variant of Win32/Winnti.H
ClamAVWin.Malware.Zard-10015671-0
KasperskyHEUR:Trojan.Win32.Winnti.gen
BitDefenderTrojan.Agent.GIFE
NANO-AntivirusTrojan.Win32.Wsgame.keguhy
AvastWin32:BackdoorX-gen [Trj]
TencentTrojan.Win32.Winnti.ha
EmsisoftTrojan.Agent.GIFE (B)
GoogleDetected
F-SecureHeuristic.HEUR/AGEN.1372789
DrWebTrojan.PWS.Wsgame.27445
VIPRETrojan.Agent.GIFE
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
VaristW32/S-c950f742!Eldorado
AviraHEUR/AGEN.1372789
Antiy-AVLTrojan/Win32.Winnti.h
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Win32/Winnti.EM!MTB
ZoneAlarmHEUR:Trojan.Win32.Winnti.gen
GDataTrojan.Agent.GIFE
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R625488
McAfeeGenericRXWM-UC!D339B0CD57D0
MAXmalware (ai score=89)
VBA32BScope.TrojanPSW.Zuten
MalwarebytesMalware.AI.4189191511
PandaTrj/Genetic.gen
RisingPUF.Creprote!8.F617 (TFE:5:LW3D0AvcacQ)
YandexTrojan.Convagent!O6jTuWrcbIo
IkarusTrojan-PWS.Win32.OnLineGames
MaxSecureTrojan.Malware.74733560.susgen
FortinetW32/Winnti.H!tr
BitDefenderThetaGen:NN.ZedlaF.36802.fu8@aa1Atpei
AVGWin32:BackdoorX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Winnti.H

How to remove Malware.AI.4189191511?

Malware.AI.4189191511 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment