Malware

How to remove “Malware.AI.428967873”?

Malware Removal

The Malware.AI.428967873 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.428967873 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.428967873?


File Info:

name: FE38BB4CED39916555BE.mlw
path: /opt/CAPEv2/storage/binaries/38ad45ae9ea4d061e7adbbde534e8c25e8747a0563c8d0a1f6aa90548824de7c
crc32: 53824DA4
md5: fe38bb4ced39916555bebd5dd57a045a
sha1: 5262018dbd1f8267c2c26d1925d5d35335e1f93d
sha256: 38ad45ae9ea4d061e7adbbde534e8c25e8747a0563c8d0a1f6aa90548824de7c
sha512: fd612a860937c04787cf8958c3e1ebf1b5ba54af83092710b18d6f82cadf729cbb6b4d529676e8eb619a451f6cd892d4b55dc35887d17a2276c1c29434c67831
ssdeep: 192:cyuWpCF1xrvAktadiZmhHn7nUMeEAXTZu10R51uUMMIGTl79Ko/uoiQ8zDX9oAG:cCQFXmdfjdAXz5AUMM51MDXKA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10C230C911CA2CCAFC3059F76D57D9ABBA222551883148DF703E11DB22D7E7E194B8B8C
sha3_384: b17eaa63bca4ce0ad12d1701336796ce545a36b83b00661e6511154ef3a5e2cc28d7320b007324e8bfb4f99f5f5546a9
ep_bytes: 5500ec6aff6808674000682c30400064
timestamp: 2015-11-15 15:59:07

Version Info:

0: [No Data]

Malware.AI.428967873 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.Y!c
AVGWin32:Evo-gen [Trj]
MicroWorld-eScanTrojan.Agent.BPNU
FireEyeGeneric.mg.fe38bb4ced399165
CAT-QuickHealTrojan.Kelihos.100136
McAfeeArtemis!FE38BB4CED39
Cylanceunsafe
SangforTrojan.Win32.Agent.Vt2h
K7AntiVirusTrojan ( 004db0461 )
AlibabaTrojan:Win32/Kryptik.7933c717
K7GWTrojan ( 004db0461 )
Cybereasonmalicious.ced399
BitDefenderThetaGen:NN.ZexaF.36348.duW@auV47df
CyrenW32/Injector.BPG.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.CBB
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:Evo-gen [Trj]
KasperskyTrojan.Win32.Agent.ihsc
BitDefenderTrojan.Agent.BPNU
NANO-AntivirusTrojan.Win32.Stealer.dzmhqg
SUPERAntiSpywareTrojan.Agent/Gen-Ransom
EmsisoftTrojan.Agent.BPNU (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.PWS.Stealer.16809
VIPRETrojan.Agent.BPNU
TrendMicroTROJ_GEN.R002C0OH223
McAfee-GW-EditionArtemis!Trojan
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataTrojan.Agent.BPNU
JiangminTrojan.Generic.jibv
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan[Backdoor]/Win32.Hlux
ArcabitTrojan.Agent.BPNU
ZoneAlarmTrojan.Win32.Agent.ihsc
MicrosoftTrojan:Script/Phonzy.B!ml
GoogleDetected
VBA32TScope.Malware-Cryptor.SB
DeepInstinctMALICIOUS
MalwarebytesMalware.AI.428967873
TrendMicro-HouseCallTROJ_GEN.R002C0OH223
RisingBackdoor.Kelihos!8.543 (TFE:2:7plhsOYww9H)
IkarusTrojan.Win32.Kelihos
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.CPMD!tr
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.428967873?

Malware.AI.428967873 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment