Malware

Should I remove “Malware.AI.4010175291”?

Malware Removal

The Malware.AI.4010175291 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4010175291 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Starts servers listening on 0.0.0.0:1080
  • Authenticode signature is invalid

How to determine Malware.AI.4010175291?


File Info:

name: 44F78F00614F750DC9EC.mlw
path: /opt/CAPEv2/storage/binaries/009331d9e7cd8c87833ee4141937facd5ec018c1e0543a2ae0137f9461084158
crc32: 954E3E23
md5: 44f78f00614f750dc9ec9bdef2f5e0cb
sha1: 86d07f007e33b840a77685f57bd1b49486c1bbdb
sha256: 009331d9e7cd8c87833ee4141937facd5ec018c1e0543a2ae0137f9461084158
sha512: 2cb485f867befb71c185f890e9af9469eb2c9b9e09d5e0b0d476fa6388edb2883edb37c65e14878738c089adbd4b4f6f495c9c8ccc6464700ca22bce4dc5c080
ssdeep: 1536:XIopVcwWq8/yYzhuCo/gVvRjmrLr57T7eJeFe8ULQt:4opie7gRRCdaJl8MQt
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1EEC38D1274E0C0B2C89A01B51519CB159B7BB9725B798983B7ED1EEE9F102D05B3F389
sha3_384: 3644dfa426799d269bfd2d90b08ca705c08a7765bcebe733937ffd3d2cac032e20273ad983c08ca476323ac4f9b44e9f
ep_bytes: e8f1850000e940feffff565733f6bf10
timestamp: 2009-03-20 06:28:40

Version Info:

0: [No Data]

Malware.AI.4010175291 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTool.3Proxy.7
MicroWorld-eScanTrojan.GenericKD.39562478
FireEyeGeneric.mg.44f78f00614f750d
ALYacTrojan.GenericKD.39562478
MalwarebytesMalware.AI.4010175291
ZillyaTrojan.Agent.Win32.140250
SangforTrojan.Win32.Agent.atgen
K7AntiVirusUnwanted-Program ( 004d38111 )
K7GWUnwanted-Program ( 004d38111 )
VirITTrojan.Win32.Proxy.AMTN
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/3Proxy.NAH potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002C0PDQ22
Paloaltogeneric.ml
ClamAVWin.Trojan.Agent-494610
BitDefenderTrojan.GenericKD.39562478
NANO-AntivirusTrojan.Win32.Agent.cjrgc
AvastWin32:Trojan-gen
Ad-AwareTrojan.GenericKD.39562478
SophosGeneric PUA IG (PUA)
ComodoMalware@#1v9wbdpbgb9yr
VIPRETrojan.GenericKD.39562478
TrendMicroTROJ_GEN.R002C0PDQ22
McAfee-GW-EditionGenericRXHN-DE!44F78F00614F
EmsisoftTrojan.GenericKD.39562478 (B)
JiangminTrojanProxy.Agent.ckd
WebrootW32.Trojan.Gen
AviraTR/Agent.118784.157
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.GenericKD.39562478
CynetMalicious (score: 99)
McAfeeGenericRXHN-DE!44F78F00614F
MAXmalware (ai score=81)
VBA32BScope.Trojan.Crampes
RisingTrojan.Generic@AI.85 (RDML:TkCyovUqZ2UWYc03t5JKEw)
YandexTrojan.GenAsa!NkI16VZ8Qbc
FortinetW32/Dx.BCXM!tr
AVGWin32:Trojan-gen

How to remove Malware.AI.4010175291?

Malware.AI.4010175291 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment