Malware

Should I remove “Malware.AI.4016694774”?

Malware Removal

The Malware.AI.4016694774 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4016694774 virus can do?

  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4016694774?


File Info:

name: 91A2D9910953898C0984.mlw
path: /opt/CAPEv2/storage/binaries/5b353d828456de3295a7d297908c7bd4bbf49fb0fbadcde8e8f3bfc54cf0f5c8
crc32: 000085DC
md5: 91a2d9910953898c09847d3176bfba1d
sha1: 1b078eec573a025f228640b617e3fb986e4fb1a3
sha256: 5b353d828456de3295a7d297908c7bd4bbf49fb0fbadcde8e8f3bfc54cf0f5c8
sha512: 2327b54efe7f022982099a372180658b99b31b3942c6b221360cad0df5245514259869394ae616fc02e096a24fcfb8061b4895f48f4f5dc16a4720feba81fb21
ssdeep: 24576:fAHnh+eWsN3skA4RV1Hom2KXMmHaClt+X55:Ch+ZkldoPK8Yakc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F0256A03B391C0A5FEAB9973DB55F2F1D6786C24C963851F12C83D6BBA701A112BD263
sha3_384: 2b78e5d2b98f23431a8ecf34678b15e2cfe8a134e40bb17f1633666e42069cb5d6904d2b7cd9e0df47816cf0b6c7044e
ep_bytes: e8c8d00000e97ffeffffcccccccccccc
timestamp: 2019-04-27 11:39:08

Version Info:

Translation: 0x0809 0x04b0

Malware.AI.4016694774 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanAIT.Heur.Acapulco.11.DBE561BF.Gen
SkyhighBehavesLike.Win32.Generic.dh
ALYacTrojan.AutoIt.100864
Cylanceunsafe
SangforTrojan.Win32.Agent.Viix
K7AntiVirusTrojan ( 0054bb081 )
AlibabaTrojan:Win32/Occamy.0afbd2e0
K7GWTrojan ( 0054bb081 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Stealer.BMFU
SymantecTrojan.Gen.MBT
Elasticmalicious (moderate confidence)
ESET-NOD32multiple detections
APEXMalicious
CynetMalicious (score: 99)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderAIT.Heur.Acapulco.11.DBE561BF.Gen
NANO-AntivirusTrojan.Win32.Autoit.fppvbb
AvastWin32:Evo-gen [Trj]
Ad-AwareAIT.Heur.Acapulco.11.DBE561BF.Gen
EmsisoftAIT.Heur.Acapulco.11.DBE561BF.Gen (B)
F-SecureHeuristic.HEUR/AGEN.1319496
VIPREAIT.Heur.Acapulco.11.DBE561BF.Gen
FireEyeAIT.Heur.Acapulco.11.DBE561BF.Gen
SophosMal/Generic-S
IkarusTrojan.Win32.Autoit
GDataAIT.Heur.Acapulco.11.DBE561BF.Gen (2x)
WebrootW32.Trojan.Gen
GoogleDetected
AviraHEUR/AGEN.1319496
XcitiumMalware@#h2a3vbisqrro
ArcabitAIT.Heur.Acapulco.11.DBE561BF.Gen [many]
MicrosoftTrojan:Win32/Ditertag.A
VaristW32/AutoIt.IM.gen!Eldorado
McAfeeArtemis!91A2D9910953
VBA32Trojan.Tiggre
MalwarebytesMalware.AI.4016694774
PandaTrj/CI.A
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.c573a0
DeepInstinctMALICIOUS

How to remove Malware.AI.4016694774?

Malware.AI.4016694774 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment