Malware

Malware.AI.4032706590 removal

Malware Removal

The Malware.AI.4032706590 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4032706590 virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.4032706590?


File Info:

name: 9C74F47910CE159DD63C.mlw
path: /opt/CAPEv2/storage/binaries/8265146cb2172e8c9e2ce691d378bf974e60df8a51e075c0b7b7810ec3971fbe
crc32: FC8C4699
md5: 9c74f47910ce159dd63c95799d26cdb0
sha1: 1652eb3622e6fb4cf678362eddf64f37f1819198
sha256: 8265146cb2172e8c9e2ce691d378bf974e60df8a51e075c0b7b7810ec3971fbe
sha512: 49399f9041f77b46dc035824605fa3e1ebc4a4881885770bfa530432a892636c67de38eea7a6621c8610806e36a73c4f88e6d44faf238009d27d5983c645fffe
ssdeep: 12288:6jkArEN249AyE/rbaMc1mLy4bO2/VJVqLXSUkdCJja:9FE//Tc1mLy4bOs2PC0a
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F0A42300A28A8CD6D2ED4F7128F3DF7186DCB9E5191A570CE194AE3B2139B1737AA354
sha3_384: ddcb714886c4625a940beb76f481bb68c90182e8f05a191011f4f716d014f5b3e815ed4a8bc0eca4c05905a74f2c5073
ep_bytes: f3c919a50a32e741eee80f270b71e29b
timestamp: 2010-04-16 07:47:33

Version Info:

FileVersion: 1.4.0.0
Comments: This program is freeware and is distributed AS IS without any warrenty expressed or implied.
FileDescription: Transparent Screen Lock
LegalCopyright: © 2010 Jonathan Holmgren (Homes32)
Compile Date: Monday, September 20, 2010, 8:47:56 PM
CompanyName: Swan River Computers
Translation: 0x0409 0x04b0

Malware.AI.4032706590 also known as:

MicroWorld-eScanApplication.ScreenLocker.C
CAT-QuickHealRiskware.ScreenLocker
McAfeeScreenLock
MalwarebytesMalware.AI.4032706590
BitDefenderApplication.ScreenLocker.C
Cybereasonmalicious.910ce1
APEXMalicious
EmsisoftApplication.ScreenLocker.C (B)
ComodoPacked.Win32.MUPX.Gen@24tbus
F-SecureTrojan.TR/Dropper.Gen
DrWebTool.DesktopLock.2
McAfee-GW-EditionBehavesLike.Win32.Spyware.gc
FireEyeApplication.ScreenLocker.C
IkarusWorm.Win32.AutoIt
JiangminRiskTool.Locker.b
AviraTR/Dropper.Gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataApplication.ScreenLocker.C (2x)
CynetMalicious (score: 100)
ALYacApplication.ScreenLocker.C
MAXmalware (ai score=80)
CylanceUnsafe
RisingRansom.Agent/Autoit!1.B5A1 (CLASSIC)

How to remove Malware.AI.4032706590?

Malware.AI.4032706590 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment