Malware

Malware.AI.638144151 removal guide

Malware Removal

The Malware.AI.638144151 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.638144151 virus can do?

  • Unconventionial language used in binary resources: Korean
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.638144151?


File Info:

name: 9275FD37B4B8368F4378.mlw
path: /opt/CAPEv2/storage/binaries/004d4e299f22937fee4529cd93e245c930eb9b22c0820d2b0496e4c23bd22666
crc32: 9141C3BC
md5: 9275fd37b4b8368f437841a5095b1b1f
sha1: 3da7f24762ff9f490599698e3622dbde41825e58
sha256: 004d4e299f22937fee4529cd93e245c930eb9b22c0820d2b0496e4c23bd22666
sha512: 2ef265dbf264348ce0c943771b7d450ee05cdda40586d17a18822e2c6696e8cec39e175bc74e4fb1914c827d7cdf3324498eaacd8a40e07f0dafc0632b4c9ec8
ssdeep: 24576:QXUFRIIk5JZ69hBCmoXY8hZcpP4JkKQQajxE/fZvplMlfdYe:1RIIk5/6XBdoXY8hnJk3QgxCZvfEz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10B5533664B5CD915DF8C5532C8188BF3BE2E5D7CC5240A137D69BE20363AF95990D03B
sha3_384: b22aabecd6fbb5c1b20cfcb86a90e604df4d1134006028f9d46323f931621687c0c7a6a226f2f371cf47caaceb78ba90
ep_bytes: 6801207100e801000000c3c3c9d2c350
timestamp: 2012-12-18 04:41:01

Version Info:

CompanyName: Ymir Entertainment
FileDescription: Metin2Client
FileVersion: 1.0.36071.1
InternalName: Metin2Client
LegalCopyright: Copyright (C) 2011
OriginalFilename: Metin2Client.exe
ProductName: Metin2Client
ProductVersion: 1, 0, 0, 1
Translation: 0x0800 0x03b5

Malware.AI.638144151 also known as:

LionicTrojan.Win32.Bodrik.4!c
MicroWorld-eScanTrojan.GenericKD.39566816
FireEyeTrojan.GenericKD.39566816
ALYacTrojan.GenericKD.39566816
CylanceUnsafe
VIPRETrojan.GenericKD.39566816
SangforTrojan.Win32.Bodrik.V9w4
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojan:Win32/Bodrik.1ae4db62
K7GWRiskware ( 00584baa1 )
SymantecTrojan.Gen.2
Paloaltogeneric.ml
ClamAVWin.Packed.Barys-6979018-0
KasperskyTrojan.Win32.Bodrik.ajv
BitDefenderTrojan.GenericKD.39566816
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.39566816
SophosMal/Generic-R
DrWebTrojan.Inject2.12268
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKD.39566816 (B)
IkarusPacked.Win32.Black
GDataTrojan.GenericKD.39566816
MAXmalware (ai score=88)
Antiy-AVLTrojan/Generic.ASMalwS.477
ArcabitTrojan.Generic.D25BBDE0
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!9275FD37B4B8
VBA32TScope.Malware-Cryptor.SB
MalwarebytesMalware.AI.638144151
TrendMicro-HouseCallTROJ_GEN.R002H0CDU22
RisingTrojan.Bodrik!8.74EE (CLOUD)
FortinetW32/Bodrik.AJV!tr
AVGWin32:Malware-gen

How to remove Malware.AI.638144151?

Malware.AI.638144151 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment