Malware

Malware.AI.4002395864 (file analysis)

Malware Removal

The Malware.AI.4002395864 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4002395864 virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4002395864?


File Info:

name: 7F5827550CB037AE1815.mlw
path: /opt/CAPEv2/storage/binaries/01e9a8688a517b64f3b1031143a0cf5719f0dee9ac78a6cac0395f239d0e935c
crc32: 815B93AA
md5: 7f5827550cb037ae1815e38e68dd9fc7
sha1: 8e1dc2525522ef0fbadc1e0e2d629ff439fbe094
sha256: 01e9a8688a517b64f3b1031143a0cf5719f0dee9ac78a6cac0395f239d0e935c
sha512: 7299f175498e73613bad233b591aed1f0ea26c5695f79d1b0fc03c74565129c8d8b8e7b0c3beb31b879c8905e90f7a67e3fc18545b1fa046586bcf91028bcf32
ssdeep: 24576:5D+WGK+Wh0+WIoOcvpzSiV9W3m5UpZ5oqnKcqvmzwj3YvKqmfNeBdPCQBy/MVSfH:5D+WGK+Wh0+WIodOa9rUpZ5vlwj3YvKF
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T17B356C4A77A881F4D176C6B88A52C596E7B27C460B308B9F06D4A35F5F339B05E3E321
sha3_384: b01e1ac976ffbec77b10a0c4a560a9fe26d703405022ef1232da738376b39550323e99033edb1188de6a6656130af8ab
ep_bytes: 4883ec28e8a70800004883c428e982fe
timestamp: 2017-05-16 16:43:33

Version Info:

FileDescription: PE injector
FileVersion: 2.3.0.0
InternalName: Xenos.exe
LegalCopyright: Copyright (C) 2017
OriginalFilename: Xenos.exe
ProductName: Xenos
ProductVersion: 2.3.0.0
Translation: 0x0400 0x04b0

Malware.AI.4002395864 also known as:

LionicTrojan.Win32.Cphj.4!c
MicroWorld-eScanTrojan.Agent.CPHJ
FireEyeTrojan.Agent.CPHJ
McAfeeArtemis!7F5827550CB0
ZillyaTool.Inject.Win64.1
K7AntiVirusUnwanted-Program ( 00525fe21 )
K7GWUnwanted-Program ( 00525fe21 )
Cybereasonmalicious.50cb03
CyrenW64/Injector.FYV
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win64/HackTool.Inject.A potentially unsafe
APEXMalicious
BitDefenderTrojan.Agent.CPHJ
Ad-AwareTrojan.Agent.CPHJ
EmsisoftTrojan.Agent.CPHJ (B)
SophosGeneric PUA IO (PUA)
GDataTrojan.Agent.CPHJ
Antiy-AVLTrojan/Generic.ASMalwS.298E7BA
GridinsoftRansom.Win64.Sabsik.sa
ViRobotTrojan.Win32.Z.Agent.1152120
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ALYacTrojan.Agent.CPHJ
MAXmalware (ai score=86)
MalwarebytesMalware.AI.4002395864
TrendMicro-HouseCallTROJ_GEN.R002H09KM21
YandexTrojan.GenAsa!O40vFwBeS40
FortinetRiskware/Inject

How to remove Malware.AI.4002395864?

Malware.AI.4002395864 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment