Malware

Malware.AI.4016240850 malicious file

Malware Removal

The Malware.AI.4016240850 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4016240850 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Installs an hook procedure to monitor for mouse events
  • Unusual version info supplied for binary

How to determine Malware.AI.4016240850?


File Info:

crc32: B23B262E
md5: ce5f88f5563698da9e3beb6d2bf3ae06
name: CE5F88F5563698DA9E3BEB6D2BF3AE06.mlw
sha1: 013089c59a3bae27f825d0ca89b66afe31ba3e77
sha256: 503dd70728c70818ca1e2e894b7bc5d2d9f088eef62aaa27a1373c1184c051da
sha512: 6d4f30b28ab8544506f1dee217db6382b4111251b24279b207ab15ba76113e014727a0ba632ecf62551e4d0d234c808471c83133b664efba19fa07164356e91f
ssdeep: 12288:bn/xDXyorqp0PpIdXnV/FKcg47aVr3Zn+nTXGx9:DoNp0PidXnVtKLrJnGXG
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 Microsoft 2017
Assembly Version: 1.0.0.0
InternalName: WIRUSLocker.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments: WIRUS
ProductName: Microsoft Browser
ProductVersion: 1.0.0.0
FileDescription: Microsoft Browser
OriginalFilename: WIRUSLocker.exe

Malware.AI.4016240850 also known as:

CynetMalicious (score: 85)
ALYacTrojan.Ransom.ScreenLocker
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.38390
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/Blocker.48b32a7f
K7GWTrojan ( 700000121 )
K7AntiVirusTrojan ( 700000121 )
SymantecML.Attribute.HighConfidence
ESET-NOD32MSIL/LockScreen.UL
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.kder
BitDefenderGen:Variant.Razy.190115
NANO-AntivirusTrojan.Win32.LockScreen.eqgzll
MicroWorld-eScanGen:Variant.Razy.190115
TencentMalware.Win32.Gencirc.11498f9f
Ad-AwareGen:Variant.Razy.190115
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_WIRUSLOCKER.A
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGen:Variant.Razy.190115
EmsisoftGen:Variant.Razy.190115 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.hdo
WebrootW32.Trojan.Gen
AviraTR/LockScreen.vauvs
MicrosoftBackdoor:Win32/Bladabindi!ml
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Razy.190115
AhnLab-V3Trojan/Win32.Blocker.C2055679
McAfeeArtemis!CE5F88F55636
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.4016240850
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_WIRUSLOCKER.A
RisingRansom.Blocker!8.12A (CLOUD)
IkarusTrojan-Ransom.WIRUSLocker
FortinetMSIL/Generic.AP.9FBD52!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HgIASOQA

How to remove Malware.AI.4016240850?

Malware.AI.4016240850 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment