Malware

Should I remove “Malware.AI.798183777”?

Malware Removal

The Malware.AI.798183777 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.798183777 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.798183777?


File Info:

name: 615F51BC392C6891F870.mlw
path: /opt/CAPEv2/storage/binaries/0391b1c5eebf74319c26456b4a312268ff6462d3157bf3e44d4513242e74f7ce
crc32: 170CD23E
md5: 615f51bc392c6891f870922e3a477453
sha1: 24e3f84152b3889f277aa80166d7f38a628faa50
sha256: 0391b1c5eebf74319c26456b4a312268ff6462d3157bf3e44d4513242e74f7ce
sha512: 2c24d92fda994b5a7d62fbde7538e32180ac9e9ede43c128a851f4d641cbfccd4debec817c41cccc82775656a56cff957076185f1feab8dc293e655bb993edbb
ssdeep: 192:/zVGffG8uxZHB0uG0Hki+Guw3uu61jtl0Hkp1oynXJAZt8BkocdrfefNog:b0f+dHBTUHuCjB1tJAZt+krwV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11772D7DB9C210033C14493381A9F96B166F6C4B6BF4391877676CE9DD632A8C152720E
sha3_384: db27055d6281741d96671fba23d961e459c4a05bc3f95ff7fc97716e3905f0003c9b04dd93c8aca2ae3e96c8774a9763
ep_bytes: 558bec6aff68d026400068a21d400064
timestamp: 2015-07-07 18:27:33

Version Info:

0: [No Data]

Malware.AI.798183777 also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.Siggen.59488
MicroWorld-eScanTrojan.Waledac.FQ
FireEyeGeneric.mg.615f51bc392c6891
CAT-QuickHealTrojan.Injector.100443
McAfeePacked-FB!615F51BC392C
K7AntiVirusTrojan ( 004c7e1e1 )
K7GWTrojan ( 004c7e1e1 )
Cybereasonmalicious.c392c6
VirITTrojan.Win32.Inject2.CNOA
CyrenW32/S-1bc9580e!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Injector.CFEW
ClamAVWin.Trojan.Waledac-7065
KasperskyTrojan.Win32.Agent.ifuv
BitDefenderTrojan.Waledac.FQ
NANO-AntivirusTrojan.Win32.Encoder.duerpn
AvastSf:Agent-BA [Trj]
EmsisoftTrojan.Waledac.FQ (B)
ComodoTrojWare.Win32.VirTool.CeeInject.KGR@5t0fp3
VIPRETrojan.Win32.Injector.cdgy (v)
McAfee-GW-EditionPacked-FB!615F51BC392C
SophosML/PE-A + Mal/Zbot-UE
IkarusTrojan.Win32.Injector
JiangminTrojan/Agent.ijuv
AviraTR/Inject.sbbeinx
MAXmalware (ai score=80)
Antiy-AVLTrojan/Generic.ASBOL.253A
MicrosoftVirTool:Win32/CeeInject.GK
ZoneAlarmTrojan.Win32.Agent.ifuv
GDataTrojan.Waledac.FQ
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.CTBLocker.R158760
VBA32OScope.Malware-Cryptor.Hlux
ALYacTrojan.Waledac.FQ
MalwarebytesMalware.AI.798183777
APEXMalicious
RisingMalware.Heuristic!ET#97% (RDMK:cmRtazoJRvVsbJNf5KJKcNr8b4F2)
YandexTrojan.GenAsa!T/Oxhzgs2cs
SentinelOneStatic AI – Malicious PE
FortinetW32/Injector.CFFW!tr
AVGSf:Agent-BA [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.798183777?

Malware.AI.798183777 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment