Malware

Malware.AI.4030458911 (file analysis)

Malware Removal

The Malware.AI.4030458911 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4030458911 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.4030458911?


File Info:

name: B4084669FF4BEC7914B6.mlw
path: /opt/CAPEv2/storage/binaries/8bffef7be43f3d7a80316ee578527d65cd1e9cd7d231ae4d29f299e3b135f140
crc32: B19BDC82
md5: b4084669ff4bec7914b6bee01973ef63
sha1: a49dd0b807221dc8e4484df10bb76f538306bc63
sha256: 8bffef7be43f3d7a80316ee578527d65cd1e9cd7d231ae4d29f299e3b135f140
sha512: 858a9ff005446189e09d8ce4c035c1a271f6e3b4713f013eb8887390d197545bc8ee223f87a6424ada020d4750c940f176963d93cc6361bdf032e986439ef063
ssdeep: 3072:aa/4vVUZDyTfV2O88rw6RYDgWLMm4snkWrptSp90hSE6d3d8qQ6S4+htKyHbuVn:5QvVUETfV2ObsLMJsi+tK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11624AD0133E0C136D4B6573AA8B74B048B73BA5657B2C34F3A9C661E5F733418D2672A
sha3_384: d0aa92c2d9ee4909d87614646a5c03fcd2291281c779731116a1ff771f971e4811e4b70c80df3c1dfec6f13d95e854c6
ep_bytes: ff250020400000000000000000000000
timestamp: 2056-09-07 10:56:33

Version Info:

Translation: 0x0000 0x04b0
Comments: CookieCheckerTools
CompanyName: tienichmmo.net
FileDescription: CookieCheckerTools
FileVersion: 1.0.0.0
InternalName: CookieCheckerTools.exe
LegalCopyright: Copyright © 2022 tienichmmo.net
LegalTrademarks: tienichmmo.net
OriginalFilename: CookieCheckerTools.exe
ProductName: CookieCheckerTools
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4030458911 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.271603
FireEyeGeneric.mg.b4084669ff4bec79
McAfeeGenericRXRC-VV!B4084669FF4B
MalwarebytesMalware.AI.4030458911
ZillyaTrojan.Kryptik.Win32.3973531
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 0059320d1 )
AlibabaTrojan:MSIL/Kryptik.19876b55
K7GWTrojan ( 0059320d1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.AFDZ
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Variant.Lazy.271603
NANO-AntivirusTrojan.Win32.Stealer.judgcf
AvastWin32:Trojan-gen
TencentWin32.Trojan.Kryptik.Udkl
EmsisoftGen:Variant.Lazy.271603 (B)
DrWebTrojan.PWS.Stealer.29975
VIPREGen:Variant.Lazy.271603
TrendMicroTROJ_GEN.R03BC0PLA22
McAfee-GW-EditionGenericRXRC-VV!B4084669FF4B
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Lazy.271603
GoogleDetected
AviraTR/Kryptik.haqkg
MAXmalware (ai score=88)
Antiy-AVLTrojan/MSIL.Kryptik
ArcabitTrojan.Lazy.D424F3
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
VBA32Worm.Bundpil
ALYacGen:Variant.Lazy.271603
TrendMicro-HouseCallTROJ_GEN.R03BC0PLA22
RisingMalware.Obfus/MSIL@AI.96 (RDM.MSIL2:v8YS5kGHy/x47b3PogUq0Q)
IkarusTrojan.MSIL.PSW
FortinetMSIL/Kryptik.AFDZ!tr
AVGWin32:Trojan-gen

How to remove Malware.AI.4030458911?

Malware.AI.4030458911 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment