Malware

Malware.AI.4006106284 (file analysis)

Malware Removal

The Malware.AI.4006106284 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4006106284 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid

How to determine Malware.AI.4006106284?


File Info:

name: CDF7FBD193D57891BDD5.mlw
path: /opt/CAPEv2/storage/binaries/3c8bad05c9195b893ff491a5c5f6095a81b604bcec36928a14bfe65ac32529cc
crc32: 63CC4BBE
md5: cdf7fbd193d57891bdd54247d7b72647
sha1: fd1be96b18ec77045d385ddeef2eb944b9400542
sha256: 3c8bad05c9195b893ff491a5c5f6095a81b604bcec36928a14bfe65ac32529cc
sha512: ddf5289684b494c21cc59256568046eced8618e4402fbf63debddd2d160f356cb7650d15bf191df7e83fd17c276492628bc130e99f445a80054c2d5e3bc8e255
ssdeep: 384:IfJs5yqusFWtRCcH4DcjZGsXVVbRKdPg0uQEuwb5rKgKMKJCmkLv3jPH/OfGlSTf:IUuss8efsub83LJC33jOfOSPDK
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T122E24A31B0C2C073C3B626B8BE85730627EC1B5899772A67757B0F692CA1BD2CB46513
sha3_384: 9a2ee121f2ddfeb2dd118aef0cc7f6b96e4d7532873d50acc931c9f1a25f22216a11af6cc9994addcf6b7f28bc27b0ce
ep_bytes: 558bec83c4fc837d0c01751360e8bcfe
timestamp: 2011-02-22 03:52:38

Version Info:

0: [No Data]

Malware.AI.4006106284 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Bamital.4!c
MicroWorld-eScanTrojan.Small.NED
FireEyeGeneric.mg.cdf7fbd193d57891
CAT-QuickHealTrojan.Bamital.19282
ALYacTrojan.Small.NED
MalwarebytesMalware.AI.4006106284
ZillyaTrojan.Bamital.Win32.211
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 0000ee811 )
AlibabaTrojan:Win32/Bamital.250edf21
K7GWTrojan ( 0000ee811 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZedlaF.36744.bq4@a0Jwjxo
VirITTrojan.Win32.Generic.CMQW
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Bamital.FF
APEXMalicious
ClamAVWin.Trojan.Bamital-2777
BitDefenderTrojan.Small.NED
NANO-AntivirusVirus.Win32.Gen.ccmw
TACHYONTrojan/W32.Small.31232.CZ
EmsisoftTrojan.Small.NED (B)
BaiduWin32.Trojan-Spy.Agent.v
F-SecureTrojan.TR/Spy.Browser.J
DrWebTrojan.Hottrend.45
VIPRETrojan.Small.NED
TrendMicroTROJ_DIPLE.SMIA
SophosMal/Bamita-A
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Diple.arc
WebrootW32.Bamital.Gen
GoogleDetected
AviraTR/Spy.Browser.J
VaristW32/Bamital.L.gen!Eldorado
Antiy-AVLTrojan/Win32.Diple.jox
Kingsoftmalware.kb.a.999
XcitiumTrojWare.Win32.Bamital.FF@2vn0at
ArcabitTrojan.Small.NED
ViRobotTrojan.Win32.A.Diple.31232.V
GDataTrojan.Small.NED
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Diple.R11113
McAfeeW32/Bamital.o
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_DIPLE.SMIA
TencentWin32.Trojan.Spy.Pgil
YandexTrojan.Bamital.Gen.5
IkarusTrojan.Win32.Bamital
MaxSecureTrojan.Diple.jox
FortinetW32/Diple.A!tr
PandaTrj/Bamital.G

How to remove Malware.AI.4006106284?

Malware.AI.4006106284 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment