Malware

Malware.AI.669095155 information

Malware Removal

The Malware.AI.669095155 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.669095155 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Behavioural detection: Injection (Process Hollowing)
  • Behavioural detection: Injection (inter-process)
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.669095155?


File Info:

name: 8050344C5C1F6A87CAA8.mlw
path: /opt/CAPEv2/storage/binaries/8b20a73d840f845f4127ad4d1c3116761ef0060713fff8366e18de0e9b32ab8b
crc32: 50EE50B8
md5: 8050344c5c1f6a87caa8923a8cb6913c
sha1: bd71d538bb11293acf90f396c5ced6c3bf0f6d2e
sha256: 8b20a73d840f845f4127ad4d1c3116761ef0060713fff8366e18de0e9b32ab8b
sha512: b177cbd5c43478b10c89b9e0afdf9df6508f9888c609b2d77718d34f5110bfc5031777b8170cc20d8c6c5108b7d28d23b30589970887ccf94d18d1fee779b877
ssdeep: 12288:OuwyGRj89Zlho6+9X3MGEKf/XgU6EjzGDsHgpmtqvi2AZBOukP7Xgm:OlRKvOtJHEk/wURjzGDAcfzXgm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BAC4021292E8893BF0E2237406FA13932B757CE46F74A39F93C656DA18752D0653932F
sha3_384: d5e41a6643045b9c054e1c696e51c80162189e66263def12a00a96ca54171174f840225b9b709c5cdcb19b45e302f8a2
ep_bytes: e80a000000e97affffffcccccccccc8b
timestamp: 2004-08-04 06:01:37

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Win32 Cabinet Self-Extractor
FileVersion: 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
InternalName: Wextract
LegalCopyright: © Microsoft Corporation. Alle Rechte vorbehalten.
OriginalFilename: WEXTRACT.EXE
ProductName: Betriebssystem Microsoft® Windows®
ProductVersion: 6.00.2900.2180
Translation: 0x0407 0x04b0

Malware.AI.669095155 also known as:

LionicTrojan.Win32.VB.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop4.19649
CynetMalicious (score: 100)
McAfeeArtemis!8050344C5C1F
Cylanceunsafe
VIPREGen:Malware.Heur.1.!copidmbe!.dm0@b0IUowli
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Malware.Heur.1.!copidmbe!.dm0@b0IUowli
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaAI:Packer.8986901120
CyrenW32/Risk.CGXY-5077
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Injector.JE
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Dropper.Win32.VB.ixo
AlibabaTrojanDropper:Win32/Injector.f77ce33d
NANO-AntivirusTrojan.Win32.VB.jheh
MicroWorld-eScanGen:Malware.Heur.1.!copidmbe!.dm0@b0IUowli
AvastWin32:Trojan-gen
TencentWin32.Trojan-Dropper.Vb.Udkl
TACHYONBackdoor/W32.Hupigon.574464.K
EmsisoftGen:Malware.Heur.1.!copidmbe!.dm0@b0IUowli (B)
F-SecureTrojan.TR/VB.hha
TrendMicroTROJ_VB.ENQ
McAfee-GW-EditionBehavesLike.Win32.Sality.hc
Trapminemalicious.high.ml.score
FireEyeGen:Malware.Heur.1.!copidmbe!.dm0@b0IUowli
SophosMal/Generic-R
SentinelOneStatic AI – Suspicious SFX
GDataGen:Variant.Graftor.5415 (2x)
JiangminTrojanDropper.VB.ance
WebrootW32.Malware.Gen
AviraTR/VB.hha
Antiy-AVLTrojan[Dropper]/Win32.VB
XcitiumBackdoor.Win32.Poison.cx@4l69it
ArcabitGen:Malware.Heur.1.!copidmbe!.E70710 [many]
ZoneAlarmTrojan-Dropper.Win32.VB.ixo
MicrosoftTrojan:Win32/Occamy.C8B
GoogleDetected
VBA32BScope.Trojan.VBKrypt
ALYacGen:Variant.Graftor.5415
MAXmalware (ai score=100)
MalwarebytesMalware.AI.669095155
TrendMicro-HouseCallTROJ_VB.ENQ
RisingTrojan.Vigorf!8.EAEA (TFE:3:MzCL9WsQCvM)
YandexTrojan.GenAsa!XPZb58SKta0
IkarusBackdoor.Poison
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBInjector.W!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.c5c1f6
DeepInstinctMALICIOUS

How to remove Malware.AI.669095155?

Malware.AI.669095155 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment