Malware

Malware.AI.933280911 removal tips

Malware Removal

The Malware.AI.933280911 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.933280911 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.933280911?


File Info:

name: AA917A5AEF6A92CD2F3C.mlw
path: /opt/CAPEv2/storage/binaries/852ade9dd1ecb02b962ccb730723b4a0c0b11ec86587290aabb9527c96300489
crc32: E73E0416
md5: aa917a5aef6a92cd2f3c702c17c912e0
sha1: da54a607fe5deb636608c40053cfc922363270d9
sha256: 852ade9dd1ecb02b962ccb730723b4a0c0b11ec86587290aabb9527c96300489
sha512: 679ea180e8cb0fe0b1dfbda1aca3ff95b38646977e0c19e43728fad092a2ab4c3a741ebbf8b2c194f806da7a987b45201361925529a906697e39842fa4ad0a10
ssdeep: 1536:enin2eciGfPpHOqm0LAbP2UpAZxGEuHFzjc6zFS3pfj/dQd5nO1hIbvvg:D4iGfIqfL36ljj03Rj/G5OzkHg
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1E3B3BF995A192137E33BC97785EE3E3BC63922F2AD07905B8331909939761929F05F0F
sha3_384: 01e6727b7d2a34605410e5c03f0be81d733796ff3778dc6b76269c4de95eacbef7c61a23cf4cf0007417d56db13ce714
ep_bytes: 558bec81ec1c0100008b450c56485785
timestamp: 2010-12-01 15:44:04

Version Info:

0: [No Data]

Malware.AI.933280911 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Kykymber.lhMk
Elasticmalicious (moderate confidence)
MicroWorld-eScanTrojan.Generic.6242972
FireEyeGeneric.mg.aa917a5aef6a92cd
CAT-QuickHealTrojan.OnLineGames.gen
SkyhighBehavesLike.Win32.PWSOnlineGames.ct
McAfeePWS-OnlineGames.ke
Cylanceunsafe
ZillyaTrojan.Kykymber.Win32.1418
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:Win32/Kykymber.97210907
K7GWPassword-Stealer ( 001d98a61 )
K7AntiVirusPassword-Stealer ( 001d98a61 )
BaiduWin32.Trojan-PSW.OLGames.b
VirITTrojan.Win32.Generic.ALVK
SymantecInfostealer.Gampass
ESET-NOD32a variant of Win32/PSW.Kykymber.AA
APEXMalicious
ClamAVWin.Spyware.78845-2
KasperskyTrojan-PSW.Win32.Kykymber.dpgc
BitDefenderTrojan.Generic.6242972
NANO-AntivirusTrojan.Win32.OnLineGames.bkxdd
AvastWin32:OnLineGames-FUZ [Trj]
TencentTrojan.PSW.Win32.MiBao.a
EmsisoftTrojan.Generic.6242972 (B)
F-SecureTrojan.TR/Spy.OnlineGame.AC
DrWebTrojan.PWS.Qq.5
VIPRETrojan.Generic.6242972
TrendMicroTSPY_KYMBER.SMA
Trapminemalicious.high.ml.score
SophosMal/PWS-GZ
IkarusTrojan-PWS.Win32.Kykymber
JiangminTrojan/Generic.bsts
WebrootW32.InfoStealer.OnlineGames.Gen
GoogleDetected
AviraTR/Spy.OnlineGame.AC
VaristW32/OnlineGames.FL.gen!Eldorado
Antiy-AVLTrojan[PSW]/Win32.Kykymber.aa
KingsoftWin32.PSWTroj.Undef.a
MicrosoftPWS:Win32/OnLineGames
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Generic.D5F429C
ViRobotTrojan.Win32.A.PSW-Kykymber.52736.A
ZoneAlarmTrojan-PSW.Win32.Kykymber.dpgc
GDataWin32.Trojan-Spy.OnlineGames.N
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Onlinegamehack37.Gen
Acronissuspicious
BitDefenderThetaGen:NN.ZedlaF.36744.gm7@amnHiKp
ALYacTrojan.Generic.6242972
MAXmalware (ai score=100)
VBA32BScope.TrojanPSW.Kykymber
MalwarebytesMalware.AI.933280911
PandaTrj/Kykymber.A
TrendMicro-HouseCallTSPY_KYMBER.SMA
RisingStealer.Kykymber!1.A598 (CLASSIC)
YandexTrojan.PWS.Kykymber!ipwUOoP2oJU
SentinelOneStatic AI – Malicious PE
MaxSecurenot-a-virus-PSW-OnlineGames.Gen
FortinetW32/Onlinegames.XQB!tr
AVGWin32:OnLineGames-FUZ [Trj]
DeepInstinctMALICIOUS

How to remove Malware.AI.933280911?

Malware.AI.933280911 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment