Malware

Malware.AI.4043001125 (file analysis)

Malware Removal

The Malware.AI.4043001125 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4043001125 virus can do?

  • At least one process apparently crashed during execution
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4043001125?


File Info:

name: EE2742C4B3CAF35EEC37.mlw
path: /opt/CAPEv2/storage/binaries/e6cc03039b93154c31a6970b7608d717cc7597ca637b2802e2d528f151edbd48
crc32: ACEFFEB4
md5: ee2742c4b3caf35eec37ab28003f3e82
sha1: f039e0063ed6932fccd7804434f93a538568f2fb
sha256: e6cc03039b93154c31a6970b7608d717cc7597ca637b2802e2d528f151edbd48
sha512: df6fb31e8f9fee00f7ecc3ca58ab833e7d3238a4d63493eebc5ee93d5530134bd8622fe0173447a5edc93685ddb96c6db6af646c0bffb124006b8a7c94bd93b1
ssdeep: 6144:dxcwSObYGkbtqwazJ7v8EE0HyKIuFvrkc:HcdObYH5q9x8wxH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A734CFD6E75CC891D4390F7BC601CC9A810C7F744D672BEE24BD3A80E9B60C5A987DA9
sha3_384: acf30e7d66c6a779778a17e2eed81aa62d4e6f2f92238a95302811ae30cb2cbd5d75255e2a3ee27a1da4f1c3d962b044
ep_bytes: 33c0682d354100c3bd85f02c37635056
timestamp: 2011-04-25 01:12:05

Version Info:

CompanyName: Don HO don.h@free.fr
FileDescription: Notepad++ : a free (GNU) source code editor
FileVersion: 5.7
InternalName: npp.exe
LegalCopyright: Copyleft 1998-2006 by Don HO
OriginalFilename: Notepad++.exe
ProductName: Notepad++
ProductVersion: 5.7
Translation: 0x0409 0x04b0

Malware.AI.4043001125 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.ee2742c4b3caf35e
CAT-QuickHealTrojanPWS.Zbot.Y
ALYacGen:Variant.Ulise.236655
CylanceUnsafe
VIPRELookslike.Win32.Sirefef.zh (v)
SangforTrojan.Win32.Kryptik.8
K7AntiVirusTrojan ( 004f11e51 )
AlibabaTrojan:Win32/Kryptik.e39caedf
K7GWTrojan ( 004f11e51 )
Cybereasonmalicious.4b3caf
BitDefenderThetaGen:NN.ZexaF.34212.oC1@aOLIkegi
CyrenW32/FakeNPP.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.ZDG
TrendMicro-HouseCallTSPY_ZBOT.SMES
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Ulise.236655
NANO-AntivirusTrojan.Win32.Agent.efuzvc
MicroWorld-eScanGen:Variant.Ulise.236655
APEXMalicious
TencentMalware.Win32.Gencirc.10c0ce90
Ad-AwareGen:Variant.Ulise.236655
EmsisoftGen:Variant.Ulise.236655 (B)
ComodoMalware@#4m4x4z3ldh99
ZillyaTrojan.Kryptik.Win32.893572
TrendMicroTSPY_ZBOT.SMES
McAfee-GW-EditionBehavesLike.Win32.Ransomware.dh
SophosMal/Generic-R + Mal/EncPk-ABFO
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Ulise.236655
WebrootW32.Infostealer.Zeus
AviraTR/Agent.aadv
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.TSGeneric
ArcabitTrojan.Ulise.D39C6F
ZoneAlarmUDS:DangerousObject.Multi.Generic
MicrosoftPWS:Win32/Zbot!rfn
AhnLab-V3Malware/Win32.Generic.C1970857
Acronissuspicious
McAfeeGenericR-HQJ!EE2742C4B3CA
VBA32Malware-Cryptor.General.3
MalwarebytesMalware.AI.4043001125
AvastWin32:Reveton-Y [Trj]
RisingTrojan.Kryptik!8.8 (CLOUD)
YandexTrojan.Kryptik!3BDg7cIAA78
IkarusTrojan.Win32.Ransom
eGambitGeneric.Malware
FortinetW32/Kryptik.ZFQ!tr
AVGWin32:Reveton-Y [Trj]
PandaBck/Qbot.AO
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4043001125?

Malware.AI.4043001125 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment