Malware

Malware.AI.735144092 information

Malware Removal

The Malware.AI.735144092 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.735144092 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.735144092?


File Info:

name: 53B5F3FF1742BDC0B86B.mlw
path: /opt/CAPEv2/storage/binaries/5ad48bd54f7bc1a2dd918e01d53a5abdb9e1d8e5b779457c70acb09cec00ceae
crc32: AD6A8417
md5: 53b5f3ff1742bdc0b86b38f34d2fef10
sha1: 645d6172299c2436b3203cc8ba70f89a48591f37
sha256: 5ad48bd54f7bc1a2dd918e01d53a5abdb9e1d8e5b779457c70acb09cec00ceae
sha512: 76b1a7d9091c2398a57d106e51888417eb5eadafbaac651b0f146b432b54052b02f41fcd4b18d75ba1294459400cf622e5eafdfade5528df18491a4241d26e55
ssdeep: 6144:b+IhFwMaUZMG6/9Dq5nY824zQJbXFpA17E2Mxz5SnS6Qs2INnFFaBJRZatqlogd:as7NZh6FG5X26QB7AJE2Y5LrIN/UiEf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12D6412448BA42927E160903F3A651AF9E4B84AB009F44050A284DB9FED3FE56776C5FF
sha3_384: a195955ef4a2a13f8b4866233fdc8c196680f74dc9a6f742434eee70b6a4fe09aa9fb84287298ac686aa34e84593d8b6
ep_bytes: 8d0424662d00f0724cb8683040008bc8
timestamp: 2006-04-18 09:18:53

Version Info:

0: [No Data]

Malware.AI.735144092 also known as:

LionicTrojan.Win32.Generic.lKKk
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.53b5f3ff1742bdc0
CAT-QuickHealTrojanPWS.Zbot.Gen
ALYacTrojan.VIZ.Gen.1
CylanceUnsafe
ZillyaTrojan.Zbot.Win32.141522
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0040f5f01 )
BitDefenderTrojan.VIZ.Gen.1
K7GWTrojan ( 0040f5f01 )
Cybereasonmalicious.f1742b
BaiduWin32.Trojan.Kryptik.fx
CyrenW32/Zbot.YD.gen!Eldorado
SymantecPacked.Generic.443
ESET-NOD32Win32/Spy.Zbot.AAU
APEXMalicious
ClamAVWin.Dropper.Zbot-9754356-0
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojanPSW:Win32/FakeAV.d111d54a
NANO-AntivirusTrojan.Win32.Zbot.ctfmct
MicroWorld-eScanTrojan.VIZ.Gen.1
RisingBackdoor.Agent!1.9D5C (RDMK:cmRtazrIsW/fPlEq6otyPzbXZB0h)
EmsisoftTrojan.VIZ.Gen.1 (B)
ComodoTrojWare.Win32.Kryptik.BLA@52cguh
DrWebTrojan.PWS.PandaENT.4379
VIPRETrojan.Win32.Kryptik.mwe (v)
TrendMicroTROJ_KRYPTK.SMN6
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
SophosMal/Generic-R + Troj/FakeAV-GWD
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.Zbot.elqp
AviraTR/Urausy.24576995
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASMalwS.466C83
MicrosoftPWS:Win32/Zbot!GO
SUPERAntiSpywareTrojan.Agent/Gen-FakeAV
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.VIZ.Gen.1
AhnLab-V3Trojan/Win32.Fareit.R83116
McAfeeTrojan-FCZA!53B5F3FF1742
TACHYONTrojan-Spy/W32.ZBot.313856.CL
VBA32Trojan.FakeAV.01657
MalwarebytesMalware.AI.735144092
PandaTrj/Tepfer.B
TrendMicro-HouseCallTROJ_KRYPTK.SMN6
TencentMalware.Win32.Gencirc.11a74127
YandexTrojan.GenAsa!aDbii5aR9t8
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.BDPK!tr
BitDefenderThetaGen:NN.ZexaF.34182.tqW@aeBhz@d
AVGWin32:Zbot-SNJ [Trj]
AvastWin32:Zbot-SNJ [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.735144092?

Malware.AI.735144092 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment