Malware

Malware.AI.4041097956 removal guide

Malware Removal

The Malware.AI.4041097956 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4041097956 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Performs HTTP requests potentially not found in PCAP.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Touches a file containing cookies, possibly for information gathering

How to determine Malware.AI.4041097956?


File Info:

name: 31D14BDD9936B2A8E6E5.mlw
path: /opt/CAPEv2/storage/binaries/b2bc6a1a5193032f361fe268e257a621eaa6363057951b55784185b56fcd4ba7
crc32: 2D54B522
md5: 31d14bdd9936b2a8e6e5d1d1cd6f807d
sha1: 32f9b940f55a957e3ef709bdeedb28834f868472
sha256: b2bc6a1a5193032f361fe268e257a621eaa6363057951b55784185b56fcd4ba7
sha512: e2293f696e54259b631d5b23ae0e68049f5ed8ea6dbbbae387792ce8c75051b60fddaa478960aa2cf4f267d8096c7491b1e6b52e676d9d92d5cecbe3afdc4dda
ssdeep: 384:2WwDPmpbfbi9ZcL2UpEGviMSMkoLxeIKE7x4pmazJWR4roU4wg:KrmpHi9ZcL2GvVFkikIKqtnU4w
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D7E2D76FA7C05D62D8AF62B45B97C9D82133BD1217A3F90DF5A0701A9932F02986770F
sha3_384: 9facadcf7cb01be92c6d9063863dda49fbefa56d3a27bbd0c342385cf86706d2b4efe0c4be1e2b9e31022a8c23b821d7
ep_bytes: 6830174000e8f0ffffff000000000000
timestamp: 2013-01-28 00:59:18

Version Info:

ProductName: Monkey Principles
FileVersion: 2.00
ProductVersion: 2.00
InternalName: litre
OriginalFilename: litre.exe

Malware.AI.4041097956 also known as:

BkavW32.Common.42E04D74
LionicTrojan.Win32.Tinba.4!c
CynetMalicious (score: 99)
McAfeeArtemis!31D14BDD9936
Cylanceunsafe
ZillyaTrojan.Genome.Win32.233136
SangforTrojan.Win32.Zusy.Vtmy
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Tinba.4a0f9c38
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/VBObfus.DM
APEXMalicious
KasperskyTrojan.Win32.Tinba.aklx
BitDefenderGen:Variant.Razy.829261
MicroWorld-eScanGen:Variant.Razy.829261
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.13bf9576
EmsisoftGen:Variant.Razy.829261 (B)
F-SecureHeuristic.HEUR/AGEN.1333350
VIPREGen:Variant.Razy.829261
TrendMicroTROJ_GEN.R002C0GI823
McAfee-GW-EditionBehavesLike.Win32.Infected.nt
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.31d14bdd9936b2a8
SophosMal/Generic-R
IkarusWorm.Win32.Vobfus
JiangminTrojan.Tinba.dkd
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1333350
Antiy-AVLWorm/Win32.Vobfus
MicrosoftTrojan:Win32/Wacatac.B!ml
XcitiumMalware@#20863y4m083r9
ArcabitTrojan.Razy.DCA74D
ZoneAlarmTrojan.Win32.Tinba.aklx
GDataGen:Variant.Razy.829261
GoogleDetected
BitDefenderThetaGen:NN.ZevbaF.36722.cm0@a43@pLbi
ALYacGen:Variant.Razy.829261
MAXmalware (ai score=100)
VBA32Worm.Vobfus
MalwarebytesMalware.AI.4041097956
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0GI823
RisingMalware.FakeFolder/ICON!1.6AC4 (CLASSIC)
YandexTrojan.GenAsa!qOOdkQ6sPAE
MaxSecureTrojan.Malware.2588.susgen
FortinetW32/VBObfus.EI
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.4041097956?

Malware.AI.4041097956 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment