Malware

Malware.AI.4039200028 removal tips

Malware Removal

The Malware.AI.4039200028 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4039200028 virus can do?

  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.4039200028?


File Info:

crc32: 477A01E1
md5: a4d4c0be3073b2879643f2c1f414fee7
name: A4D4C0BE3073B2879643F2C1F414FEE7.mlw
sha1: 20652fbc10375bbeda8b2ccc361b3022ebce1e71
sha256: 62e6b549c5d5751cad699ecead4253b7111377977f25ca139128964c11de2c94
sha512: e646dbf8fa048d0ee7035d12625b36bc8fb23c27c0c8c6f3de515a2ab1e04e839ca2e8e3f41aa18ba275634f9c03e982beb5b7b7b59f203dffec6b10fae056bf
ssdeep: 12288:P7ka92AxU9p8CADO5H4cg8Zcv/0yxZx7PTdrYTMuUDt38YaV:P7v92yDO5XZcXRlBrIQtMYaV
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright:
InternalName:
FileVersion: 2, 0, 0, 24
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: Scenic Reflections Install Program
SpecialBuild:
ProductVersion: 2, 0, 0, 24
FileDescription:
OriginalFilename:
Translation: 0x0409 0x04b0

Malware.AI.4039200028 also known as:

K7AntiVirusTrojan ( 0000f3d81 )
LionicTrojan.Win32.StartPage.4!c
Elasticmalicious (high confidence)
DrWebTrojan.StartPage.1678
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.46227663
CylanceUnsafe
SangforTrojan.Win32.StartPage.ags
AlibabaTrojan:Win32/StartPage.cb6e1e88
K7GWTrojan ( 0000f3d81 )
Cybereasonmalicious.e3073b
CyrenW32/Trojan.XHZQ-1673
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.StartPage.ags
BitDefenderTrojan.GenericKD.46227663
MicroWorld-eScanTrojan.GenericKD.46227663
TencentWin32.Trojan.Startpage.Lnxs
Ad-AwareTrojan.GenericKD.46227663
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0OJS21
McAfee-GW-EditionBehavesLike.Win32.Dropper.hc
FireEyeTrojan.GenericKD.46227663
EmsisoftTrojan.GenericKD.46227663 (B)
AviraTR/StartPage.avjbh
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmTrojan.Win32.StartPage.ags
GDataTrojan.GenericKD.46227663
AhnLab-V3Trojan/Win.StartPage.C4743113
McAfeeArtemis!A4D4C0BE3073
MAXmalware (ai score=89)
VBA32AdWare.EZula
MalwarebytesMalware.AI.4039200028
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0OJS21
YandexTrojan.StartPage!G+2mzCqRgWY
IkarusTrojan.Win32.StartPage
FortinetW32/multiple_detections
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Malware.AI.4039200028?

Malware.AI.4039200028 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment