Malware

Malware.AI.667218733 removal guide

Malware Removal

The Malware.AI.667218733 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.667218733 virus can do?

  • Unconventionial binary language: Hebrew
  • Unconventionial language used in binary resources: Hebrew
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with Themida
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.667218733?


File Info:

name: 9648E0297E7FC7211982.mlw
path: /opt/CAPEv2/storage/binaries/d1ae5d898bea587ef558aa34b54df8a31ce33440ab6158cd7ded8782fb50e539
crc32: 286886E4
md5: 9648e0297e7fc721198256abda1a5320
sha1: 36dbae98bb0b476a831e7b7066c6d2ebd68da125
sha256: d1ae5d898bea587ef558aa34b54df8a31ce33440ab6158cd7ded8782fb50e539
sha512: 9f032954a3a30fa3885fb242d8950c63945bcc60b63b0c9f03bb34f58cd6e2434949a8c5caf8717744bd52049ebb1264a6a7043b812b7ce78d6e71a4512a3b75
ssdeep: 98304:J2CU4AUnqcZ92eqQ+NdYyoz6oB4Nuztse2Vmh5XbvwtQB653vRQFWvsZ+UHuDN:REpjYyeBDseJXbv3B615t0Z1H0
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14066AEE2790EB2CFD46B2AF49657CD42B96C83FE42244402DC68B87E6E53C8D15C6E1D
sha3_384: 89844edbc2da7ef2b78f97b31f52ab8e471a3aab10b9358d780c84c718e48cc42ff6ef8168587ca79cc7ffabddcab729
ep_bytes: e8a6570000e989feffff8bff558bec83
timestamp: 2013-05-22 16:30:16

Version Info:

CompanyName: NimbleSoft LLC
FileDescription: Digitizer Calibration Tool
FileVersion: 6.2.1.3
InternalName: digcaltool
LegalCopyright: Copyright (C) 2009-2013 - NimbleSoft LLC
OriginalFilename: digcaltool
ProductName: Digitizer Calibration Tool
ProductVersion: 6.2.1.3
Translation: 0x040d 0x04b0

Malware.AI.667218733 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.67201197
MalwarebytesMalware.AI.667218733
SangforTrojan.Win32.Agent.V3in
K7AntiVirusTrojan ( 00438a3a1 )
AlibabaTrojan:Win32/Kryptik.6b2b292a
K7GWTrojan ( 00438a3a1 )
Cybereasonmalicious.8bb0b4
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.BBTG
APEXMalicious
CynetMalicious (score: 100)
AvastWin32:Urausy-AE [Trj]
F-SecureTrojan.TR/Crypt.Agent.ncazq
TrendMicroTROJ_GEN.R002C0PEO23
McAfee-GW-EditionBehavesLike.Win32.Generic.vh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.9648e0297e7fc721
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.Agent.JFLJ2K
WebrootW32.Rogue.Gen
AviraTR/Crypt.Agent.ncazq
MAXmalware (ai score=89)
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
McAfeeRansom-FCDW!9648E0297E7F
Cylanceunsafe
PandaTrj/RansomGen.A
TrendMicro-HouseCallTROJ_GEN.R002C0PEO23
RisingTrojan.Generic@AI.98 (RDML:PuJ4iGrlNoieFmHVKNh0Bg)
IkarusWin32.SuspectCrc
FortinetW32/Zbot.AAO!tr
BitDefenderThetaGen:NN.ZexaF.36196.@N0@aeZ1lgiO
AVGWin32:Urausy-AE [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.667218733?

Malware.AI.667218733 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment