Malware

How to remove “Malware.AI.1406255750”?

Malware Removal

The Malware.AI.1406255750 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1406255750 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.1406255750?


File Info:

name: D7BCF08617F1EF8BEAEB.mlw
path: /opt/CAPEv2/storage/binaries/7f0e03b37747bd78d76fed70146c983d263d567bb49f5621fb4920306dc60af2
crc32: 10C599EC
md5: d7bcf08617f1ef8beaeba0bdd7f2ee7f
sha1: b9bcd5bd19238fb8459a8c74b9542071b0075b25
sha256: 7f0e03b37747bd78d76fed70146c983d263d567bb49f5621fb4920306dc60af2
sha512: 9baa64c7dfded7a35e8b5efc320e18250e8bf206a57df3d1efcdb85bc4094c5204ff3b436a3a8218318fad74ac2748c5b5707cbcb4fdfa089750a54599a48510
ssdeep: 3072:OtrQiSXDiTncdcDqR7yM1dTAXZe+Tl5XaLdBE+dXUl4Bj/tK3NQpT:OtrBSXDijcdcDqR778p0LG4BjAN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FE142A3EB681CF01CA5409B5C1E7857453E3AD87E337D7867E843ADA2E723688D4A784
sha3_384: e0e60c708486f7a1574fad959fd7f08bcf604f97c12ccf4879f4ea0e136ccfede8cce2a027e41b638aa2ac3f4a137100
ep_bytes: ff250020400000000000000000000000
timestamp: 2086-07-21 23:46:17

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: TGXV3
FileVersion: 1.0.0.0
InternalName: TGX.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: TGX.exe
ProductName: TGXV3
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.1406255750 also known as:

LionicTrojan.Win32.Gatak.4!c
MicroWorld-eScanGen:Variant.Lazy.97134
FireEyeGeneric.mg.d7bcf08617f1ef8b
ALYacGen:Variant.Lazy.97134
CylanceUnsafe
SangforTrojan.Win32.Gatak.fbi
CrowdStrikewin/malicious_confidence_100% (W)
K7GWUnwanted-Program ( 00543ece1 )
K7AntiVirusUnwanted-Program ( 00543ece1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/DllInject.ACF potentially unsafe
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:Trojan.Win32.Gatak.fbi
BitDefenderGen:Variant.Lazy.97134
AvastWin32:MalwareX-gen [Trj]
Ad-AwareGen:Variant.Lazy.97134
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0PB922
McAfee-GW-EditionRDN/Generic PWS.y
EmsisoftGen:Variant.Lazy.97134 (B)
GDataGen:Variant.Lazy.97134
Antiy-AVLTrojan/Generic.ASMalwS.3521BA6
GridinsoftRansom.Win32.Sabsik.sa
ZoneAlarmUDS:Trojan.Win32.Gatak.fbi
MicrosoftProgram:Win32/Wacapew.C!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C4441751
McAfeeRDN/Generic PWS.y
MAXmalware (ai score=84)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.1406255750
TrendMicro-HouseCallTROJ_GEN.R002C0PB922
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:kBbv3TuAFaPdDzyk0yQb1w)
YandexRiskware.Agent!4K2lbym5NQQ
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_82%
FortinetAdware/DllInject
BitDefenderThetaGen:NN.ZemsilF.34212.lm0@aOiJHsh
AVGWin32:MalwareX-gen [Trj]
Cybereasonmalicious.d19238
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.1406255750?

Malware.AI.1406255750 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment