Malware

Malware.AI.4007126218 (file analysis)

Malware Removal

The Malware.AI.4007126218 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4007126218 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode patterns malware family
  • Touches a file containing cookies, possibly for information gathering
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.4007126218?


File Info:

name: 0AC165F0006BAC39FC92.mlw
path: /opt/CAPEv2/storage/binaries/b92a2e60db5963b5147f1cd58c25f47a3ab1a6aca529c9ca0ac5e6c7d0ca2ded
crc32: 6F05D2A2
md5: 0ac165f0006bac39fc92a7043523281b
sha1: 313b2d64ecca492ecbb98082cd8d9c075ebcd917
sha256: b92a2e60db5963b5147f1cd58c25f47a3ab1a6aca529c9ca0ac5e6c7d0ca2ded
sha512: 457411f8e047fbe329e4f80b77b4751e32599b534f5293c40e23e761e4234a9f43fa0d917a924eba732b2174310c452983582952205aa2528c076339b9b2b73f
ssdeep: 768:W434BPxdSKhhDBwy9du2ONRrF7sv9oui:Wk4Bpd3hxBwyduB7F7sv9o
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EDB2CFA71FE4753BF7568BBF095DE10AEEA4612B918689A8CF059A0D903B05123847EC
sha3_384: 96587a01ce8ddeb6d2853bfd9a17211bcce57c411eef9102ae5d0765755df54f87e12435240be052df9c18fe971356b4
ep_bytes: 558bec83ec0c535756beca089d3e33d8
timestamp: 2009-07-27 07:51:51

Version Info:

0: [No Data]

Malware.AI.4007126218 also known as:

BkavW32.AIDetectMalware
LionicHacktool.Win32.Krap.3!c
AVGWin32:Fraudo [Trj]
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Downloader.Bredolab.AO
FireEyeGeneric.mg.0ac165f0006bac39
SkyhighBehavesLike.Win32.Generic.mc
ALYacTrojan.Downloader.Bredolab.AO
MalwarebytesMalware.AI.4007126218
ZillyaTrojan.Small.Win32.5185
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005727771 )
AlibabaVirTool:Win32/Obfuscator.82cf08f0
K7GWTrojan ( 005727771 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.BDE24A7C1E
VirITTrojan.Win32.Small.JU
SymantecTrojan Horse
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.ABH
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Spyware.64157-2
KasperskyPacked.Win32.Krap.t
BitDefenderTrojan.Downloader.Bredolab.AO
NANO-AntivirusTrojan.Win32.Small.bavpr
AvastWin32:Fraudo [Trj]
TencentMalware.Win32.Gencirc.10bb5e2b
TACHYONTrojan-PWS/W32.Small.25600.E
EmsisoftTrojan.Downloader.Bredolab.AO (B)
F-SecureTrojan.TR/Agent.HUHV.A
DrWebBackDoor.Tdss.119
VIPRETrojan.Downloader.Bredolab.AO
TrendMicroTROJ_FAKEALE.SME
Trapminemalicious.high.ml.score
SophosMal/EncPk-IF
IkarusPacker.Win32.Krap
JiangminTrojan/PSW.Small.ig
VaristW32/Trojan.NWOA-2147
AviraTR/Agent.HUHV.A
Antiy-AVLTrojan[Packed]/Win32.Krap
KingsoftWin32.Troj.Undef.a
MicrosoftTrojan:Win32/Alureon.BK
XcitiumTrojWare.Win32.Krap.T@1oolym
ArcabitTrojan.Downloader.Bredolab.AO
ZoneAlarmPacked.Win32.Krap.t
GDataTrojan.Downloader.Bredolab.AO
GoogleDetected
AhnLab-V3Malware/Gen.Generic.R481214
McAfeeGeneric FakeAV.d!gen
MAXmalware (ai score=100)
VBA32Malware-Cryptor.Win32.General.4
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_FAKEALE.SME
RisingWorm.Autorun!8.50 (TFE:2:o2ttpPDwJVV)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PackTDss.W!tr
Cybereasonmalicious.0006ba
DeepInstinctMALICIOUS
alibabacloudVirtool:Win/AutoRun.ABH

How to remove Malware.AI.4007126218?

Malware.AI.4007126218 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment