Malware

Should I remove “Malware.AI.820168164”?

Malware Removal

The Malware.AI.820168164 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.820168164 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Guard pages use detected – possible anti-debugging.
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • A process created a hidden window
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Created a process from a suspicious location
  • A script process created a new process
  • Appears to use command line obfuscation
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.820168164?


File Info:

name: 139FDDE644079B6A8FD2.mlw
path: /opt/CAPEv2/storage/binaries/e0e1f78d89b28a412c223adc9364eace4b51713ea20c427cfaea54356f49a082
crc32: 2C7C39B8
md5: 139fdde644079b6a8fd29d0c277e5810
sha1: 4d097b9d9a7ae08a14ec17ad64fad19acbfad79f
sha256: e0e1f78d89b28a412c223adc9364eace4b51713ea20c427cfaea54356f49a082
sha512: 48923d6371ed40bf2ee666ac37cded04b607b5bd4d5b33ccb2e0c8ba3e6911505200fe3b85ce206cc55d2f653a77ab8e14e9bf54cc9673e174344c4b8db6cd8f
ssdeep: 49152:pyzavoixmuHm/9KS6JM81s4wokcUpBps8STMs1:pyzMRHm/9sMKkcUbOlMW
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T195A52311B7D14572C8323AB45AE8E775683CBC101F384BDFA3A4622D6D306D1AA357EB
sha3_384: d30840c13ad8ad8ac2cb6c867f8d3f00aee2f028da242ae91c80fe630a61b5463b4bbb72d42cf18385b2b3908068dc08
ep_bytes: e848050000e988feffff3b0d58154300
timestamp: 2020-06-07 15:07:31

Version Info:

0: [No Data]

Malware.AI.820168164 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.AntiVM.trEF
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.47511234
FireEyeGeneric.mg.139fdde644079b6a
ALYacTrojan.GenericKD.47511234
CylanceUnsafe
K7AntiVirusTrojan ( 0058245c1 )
K7GWTrojan ( 0058245c1 )
Cybereasonmalicious.d9a7ae
ArcabitTrojan.Generic.D2D4F6C2
CyrenW32/Agent.DSN.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32RAR/Agent.DQ
ZonerProbably Heur.RARAutorun
TrendMicro-HouseCallTROJ_GEN.R002H0CKS21
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Cryprar.vm
BitDefenderTrojan.GenericKD.47511234
AvastSFX:Runner-C [Bd]
Ad-AwareTrojan.GenericKD.47511234
EmsisoftTrojan.GenericKD.47511234 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosMal/Generic-S
IkarusTrojan.Agent
AviraTR/Agent.spyfi
MAXmalware (ai score=88)
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotTrojan.Win32.Z.Sabsik.2083694
GDataTrojan.GenericKD.47511234
McAfeeArtemis!139FDDE64407
MalwarebytesMalware.AI.820168164
APEXMalicious
RisingMalware.AbnormalScript/SFX!1.D9B9 (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/RARAgent.DL!tr
AVGSFX:Runner-C [Bd]

How to remove Malware.AI.820168164?

Malware.AI.820168164 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment