Malware

Malware.AI.4030255256 malicious file

Malware Removal

The Malware.AI.4030255256 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4030255256 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Executed a process and injected code into it, probably while unpacking
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Malware.AI.4030255256?


File Info:

crc32: A974CD49
md5: bcb85170e78da724530c79e3cbb0e331
name: BCB85170E78DA724530C79E3CBB0E331.mlw
sha1: 00307c516a1cca05cc300fd84cbac49729b1fbde
sha256: dcd7ec8c085a753178fd4bb5c58f45cf6e6c1cbea3abc24c99c3f44403b95c97
sha512: 245fe3730ffca7d5b20d715419a785d7f201054469cab2c57b9f2d5ef5903ef801005ca24e423e7b92b63841519c7e8add444a5bfee8266b4dd69af3b3ce168b
ssdeep: 3072:7b2YkX6HGtp1p8kxjkeCwywkAetJ7phV6edGopi/v9v15KbgJX5cE/Nfxe4ZS:7Sqm71p8Qd4wkA46IpiH9TI+5V/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0407 0x04b0
LegalCopyright: Bentis Media Inc.
InternalName: Sedately
FileVersion: 8.02.0009
CompanyName: appcelerator, inc.
ProductName: Xeaventools Software
ProductVersion: 8.02.0009
OriginalFilename: Sedately.exe

Malware.AI.4030255256 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.PonyStealer.tm0@cuqlU2D
FireEyeGeneric.mg.bcb85170e78da724
ALYacGen:Heur.PonyStealer.tm0@cuqlU2D
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 0050b6c71 )
BitDefenderGen:Heur.PonyStealer.tm0@cuqlU2D
K7GWTrojan ( 0050b6c71 )
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZevbaF.34804.tm0@auqlU2D
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Zbot.enuqyp
TencentMalware.Win32.Gencirc.10bba603
Ad-AwareGen:Heur.PonyStealer.tm0@cuqlU2D
SophosMal/Generic-R + Mal/FareitVB-M
ComodoMalware@#1kzgqx7buk24a
F-SecureHeuristic.HEUR/AGEN.1121806
ZillyaTrojan.Zbot.Win32.202615
TrendMicroTrojanSpy.Win32.LOKI.SM.hp
McAfee-GW-EditionBehavesLike.Win32.Trojan.fm
EmsisoftGen:Heur.PonyStealer.tm0@cuqlU2D (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.Zbot.fjkk
AviraHEUR/AGEN.1121806
Antiy-AVLTrojan[Spy]/Win32.Zbot
ArcabitTrojan.PonyStealer.E6C940
ZoneAlarmTrojan-Spy.Win32.Zbot.ydka
GDataGen:Heur.PonyStealer.tm0@cuqlU2D
AhnLab-V3Win-Trojan/VBKrypt.RP.X1764
MalwarebytesMalware.AI.4030255256
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.DNUI
TrendMicro-HouseCallTrojanSpy.Win32.LOKI.SM.hp
RisingSpyware.Zbot!8.16B (TFE:4:fum4UQXTS9C)
YandexTrojanSpy.Zbot!+ohvQRwAwyI
MAXmalware (ai score=85)
eGambitUnsafe.AI_Score_99%
FortinetW32/GenKryptik.ABLE!tr
AVGWin32:Malware-gen
Cybereasonmalicious.0e78da
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.5cf

How to remove Malware.AI.4030255256?

Malware.AI.4030255256 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment