Malware

What is “Malware.AI.781663958”?

Malware Removal

The Malware.AI.781663958 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.781663958 virus can do?

  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.781663958?


File Info:

name: 17795259E08DE484CEAC.mlw
path: /opt/CAPEv2/storage/binaries/7eeb362740e2881b96afc55619f70f34393296afc233200d9de6c6950370054a
crc32: 5D14C39E
md5: 17795259e08de484ceacb7b94ff25646
sha1: 113a08c97ef337ce99ba019ff823008448b47b38
sha256: 7eeb362740e2881b96afc55619f70f34393296afc233200d9de6c6950370054a
sha512: 3c2f3997c6968cd2127b7d5670cbc99d0b13b0ec26f5fe6d6c7f7a42f7c316d5a875814bd3b94eab8e4719e56d2ac4f4543a1afbcb56af3d267bcac8dbb32a8c
ssdeep: 12288:i2ToLD2QfWUEknSsmjj/UVF4TLSeGTOTjMVJK1P5aEL3Eryhx:ikuPfWsnnw/UV+LSeG2MVcRaf2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A2254B3BAF8AA136D96234FC8C9FC1D5940939312C585B87FF915F0C7E76652232A983
sha3_384: cadd2c7035e5837f3045c233552a3fef9e4c2f179ca27a0a7748c3bb87207d30e6b7825faed5b4164d3035cb5c45bf1b
ep_bytes: 558bec83c4f05356b81c991100e83ad3
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.781663958 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanGen:Variant.Doina.46553
ClamAVWin.Trojan.Netmail-9844910-0
FireEyeGeneric.mg.17795259e08de484
ALYacGen:Variant.Doina.46553
MalwarebytesMalware.AI.781663958
VIPREGen:Variant.Doina.46553
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
K7GWSpyware ( 004bfe9d1 )
K7AntiVirusSpyware ( 004bfe9d1 )
CyrenW32/Banker.V.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Spy.Banker.WGA
ZonerTrojan.Win32.88740
APEXMalicious
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.NetMail.a
BitDefenderGen:Variant.Doina.46553
NANO-AntivirusTrojan.Win32.NetMail.cndhca
AvastWin32:Trojan-gen
TencentBackdoor.Win32.NetMail.ha
TACHYONTrojan/W32.DP-Agent.988160
SophosTroj/Agent-BCNT
F-SecureTrojan.TR/Zusy.9881605548
DrWebTrojan.DownLoader4.61273
ZillyaTrojan.Banker.Win32.53195
TrendMicroBackdoor.Win32.NETMAIL.SMTH
McAfee-GW-EditionBehavesLike.Win32.PWSBanker.dh
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Doina.46553 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan-Stealer.Banker.AK
JiangminBackdoor/NetMail.a
AviraTR/Zusy.9881605548
Antiy-AVLTrojan[Backdoor]/Win32.NetMail
XcitiumTrojWare.Win32.Spy.Banker.VIS@8ekceg
ArcabitTrojan.Doina.DB5D9
ZoneAlarmBackdoor.Win32.NetMail.a
MicrosoftTrojan:Win32/Dorv.B!rfn
GoogleDetected
AhnLab-V3Backdoor/Win32.NetMail.C3359984
McAfeeGenericRXIE-DJ!17795259E08D
MAXmalware (ai score=89)
VBA32Backdoor.NetMail
Cylanceunsafe
PandaTrj/Dtcontx.I
TrendMicro-HouseCallBackdoor.Win32.NETMAIL.SMTH
RisingRansom.Blocker!8.12A (TFE:4:iWNbawThGVF)
YandexTrojan.GenAsa!Dt9naGN/FsA
IkarusTrojan-Spy.Zbot
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Banker.WGA!tr.spy
BitDefenderThetaGen:NN.ZelphiF.36132.8GW@auv89co
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.781663958?

Malware.AI.781663958 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment